From nobody Mon Oct 30 21:47:02 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SK6Lv0cpyz4ySQR for ; Mon, 30 Oct 2023 21:47:35 +0000 (UTC) (envelope-from o1e9.cherkasov@yandex.com) Received: from forward400b.mail.yandex.net (forward400b.mail.yandex.net [178.154.239.159]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SK6Ls6jpCz4MYg for ; Mon, 30 Oct 2023 21:47:33 +0000 (UTC) (envelope-from o1e9.cherkasov@yandex.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=yandex.com header.s=mail header.b=tpZfJeNE; spf=pass (mx1.freebsd.org: domain of o1e9.cherkasov@yandex.com designates 178.154.239.159 as permitted sender) smtp.mailfrom=o1e9.cherkasov@yandex.com; dmarc=pass (policy=none) header.from=yandex.com Received: from mail-nwsmtp-smtp-production-main-63.sas.yp-c.yandex.net (mail-nwsmtp-smtp-production-main-63.sas.yp-c.yandex.net [IPv6:2a02:6b8:c14:6e01:0:640:627f:0]) by forward400b.mail.yandex.net (Yandex) with ESMTP id 5E7C36AE84 for ; Tue, 31 Oct 2023 00:47:30 +0300 (MSK) Received: by mail-nwsmtp-smtp-production-main-63.sas.yp-c.yandex.net (smtp/Yandex) with ESMTPSA id 2lcN5IDDZSw0-2w6PByaA; Tue, 31 Oct 2023 00:47:30 +0300 X-Yandex-Fwd: 1 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yandex.com; s=mail; t=1698702450; bh=glofzoyYyqByPK/QIhIztKN78/uU7HDoFlgRODhF5FI=; h=Subject:From:Reply-To:To:Date:Message-ID; b=tpZfJeNEVHsL4HYMTjqvoiJhhKi+FCwYYfMMAHYpoovqVc4YwF1cJX5WHNO/B9Vka nfExvuePskcoride0ViC3zkgmPjN5PfXtagq9PH5QaJFXFicn2+mAk/Mn8uGvVqDbj RPHozhM5TrexlvLukJYHqJJ0tQINVBbido2o5bxo= Message-ID: <35ffb4dd-ff9e-4af8-adb4-c8d402a22f7a@yandex.com> Date: Mon, 30 Oct 2023 22:47:02 +0100 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird To: freebsd-questions@FreeBSD.org Reply-To: o1e9@member.fsf.org Content-Language: en-US, ru-RU, nb-NO From: Oleg Cherkasov Subject: 14.0-RC3, sendmail reports an error on supplied /etc/mail/aliases Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Result: default: False [1.46 / 15.00]; RBL_SENDERSCORE(2.00)[178.154.239.159:from]; NEURAL_SPAM_MEDIUM(0.98)[0.984]; NEURAL_HAM_SHORT(-0.74)[-0.739]; NEURAL_HAM_LONG(-0.69)[-0.692]; BAD_REP_POLICIES(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_IN_DNSWL_LOW(-0.10)[2a02:6b8:c14:6e01:0:640:627f:0:received]; XM_UA_NO_VERSION(0.01)[]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; HAS_REPLYTO(0.00)[o1e9@member.fsf.org]; REPLYTO_DOM_NEQ_FROM_DOM(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@FreeBSD.org]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; RCVD_IN_DNSWL_NONE(0.00)[178.154.239.159:from]; RCPT_COUNT_ONE(0.00)[1]; R_DKIM_ALLOW(0.00)[yandex.com:s=mail]; RCVD_TLS_LAST(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; R_SPF_ALLOW(0.00)[+ip4:178.154.239.144/28]; TO_DN_NONE(0.00)[]; FREEMAIL_FROM(0.00)[yandex.com]; RCVD_VIA_SMTP_AUTH(0.00)[]; ARC_NA(0.00)[]; DKIM_TRACE(0.00)[yandex.com:+]; FROM_EQ_ENVFROM(0.00)[]; ASN(0.00)[asn:200350, ipnet:178.154.224.0/19, country:RU]; DMARC_POLICY_ALLOW(0.00)[yandex.com,none]; FREEMAIL_ENVFROM(0.00)[yandex.com]; MIME_TRACE(0.00)[0:+]; RCVD_COUNT_TWO(0.00)[2] X-Rspamd-Queue-Id: 4SK6Ls6jpCz4MYg X-Spamd-Bar: + Hi, I have observed a problem while attempting to update the sendmail configuration, as follows: cd /etc/mail && make /usr/sbin/sendmail -bi -OAliasFile=/etc/mail/aliases sendmail: no recipients *** Error code 66 I had no chance to modify the /etc/mail/aliases file yet, so it is the original from the 14.0-RC2 and then upgraded to RC3.  The /etc/mail/aliases looks good, of course. Is anyone experiencing the issue so far? Cheers, Oleg From nobody Mon Nov 6 01:02:30 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SNtP52sYPz50N3h for ; Mon, 6 Nov 2023 01:02:33 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SNtP44j9Yz3Yd8 for ; Mon, 6 Nov 2023 01:02:32 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=3CZXfOlD; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 616E0FBFAEB for ; Mon, 6 Nov 2023 01:02:30 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699232550; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:Sender; bh=H8ImxSt2dVhW9mLlgyZnAboywB7TA+aSb7YYMHOahsQ=; b=3CZXfOlDrLXk5zYBlNjX+H4R0PEP2ETPSX0fNLRyasRk7OCpuFh0PLxBtNoqpPJZ uZNRN0Rd4LW9uFlLd0NPvLjlRMkU9FLeOeDxdYumre3Wu6LGv8bEB13epycZkBBXZFd zTfvup6V2UzaYWDN4BkD0P78y3kgXtFfd0lae27Jc6HDMnomBOonDU6QQnkY56Y/NZw StGk6gAqrGrTXvD3ut9qhXEM9gIzXNglb1gnIE/kkkPmAjTcxKSHU+kKtBEQsZU917R hdJTttdWcn0eQkrNEQrTdtncPRtjWY2NwY93qkxVoLkR4gVY0m9IIgFNlFEK3e2Lw1D rl3re2PJrA== Date: Mon, 6 Nov 2023 02:02:30 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: Subject: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.27 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.97)[-0.972]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SNtP44j9Yz3Yd8 X-Spamd-Bar: ---- Hi, I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 Lin= ux box. On my FreeBSD boxes I get openssl read errors on some different dom= ains, such as: $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf =C2=A0 % Total=C2=A0=C2=A0=C2=A0 % Received % Xferd=C2=A0 Average Speed=C2= =A0=C2=A0 Time=C2=A0=C2=A0=C2=A0 Time=C2=A0=C2=A0=C2=A0=C2=A0 Time=C2=A0 Cu= rrent =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Dload=C2=A0 Upload=C2=A0=C2=A0 T= otal=C2=A0=C2=A0 Spent=C2=A0=C2=A0=C2=A0 Left=C2=A0 Speed 12=C2=A0 763k=C2=A0=C2=A0 12 98139=C2=A0=C2=A0=C2=A0 0=C2=A0=C2=A0=C2=A0=C2= =A0 0=C2=A0=C2=A0 377k=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0=C2=A0 0:00:02 --:--:= --=C2=A0 0:00:02=C2=A0 378k curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL routines:ss= l3_get_record:decryption failed or bad record mac, errno 0 I get the same with wget. I also have problems getting email and using SFTP: Email: ** IMAP error on mail.example.com: stream error ** IMAP connection broken SFTP: Status: Connecting to www.example. com... Status: Using username "foo". Command:=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Pass: **************** Error:=C2=A0 FATAL ERROR: Incorrect MAC received on packet Error:=C2=A0 Could not connect to server Status: Waiting to retry... This is only a problem on the two FreeBSD boxes, not on the OpenBSD or the = Linux box. All connected to the same network. The two FreeBSD boxes runs=C2= =A013.2-RELEASE-p4. Is this a problem with openssl on FreeBSD or what am I looking at here? Kind regards From nobody Mon Nov 6 01:34:57 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SNv6l3lnTz50VQt for ; Mon, 6 Nov 2023 01:35:11 +0000 (UTC) (envelope-from pprocacci@gmail.com) Received: from mail-ej1-x62d.google.com (mail-ej1-x62d.google.com [IPv6:2a00:1450:4864:20::62d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SNv6l1y1gz3dWL for ; Mon, 6 Nov 2023 01:35:11 +0000 (UTC) (envelope-from pprocacci@gmail.com) Authentication-Results: mx1.freebsd.org; none Received: by mail-ej1-x62d.google.com with SMTP id a640c23a62f3a-9de7a43bd1aso187882166b.3 for ; Sun, 05 Nov 2023 17:35:11 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699234508; x=1699839308; darn=freebsd.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=LJS1QleEbKLL6lqMd3jVMeLx97mZS1VyARUibf6AtMI=; b=PXr5YLZzpw42sP0YRJCYK91Fzbo0eaT4dryT7p5v2xsAj3CjVbOyN4m0/WuEofzmFj LWJQiAM50pEhIf7YIoPSAbtR3HNLXuQYJjpLPzr2njbES4S5KfRXwN9ec9QYcIkKU3dO 0vKUORsAGu9nT6Mi+x6VszAHKuIGmbMDHATpwhks9GbDjUZdOytMx3eML7VL3L3yQL96 ryLzVaEisqaph2OFwV/oQkUFj6zKvGHMf6mxILAkx+tq8QQTj6/FwU4kDIQvFxDH+KG/ yPGZZow7mh6xzptN87QfJZJZxsGoL//QlroyoIQKXBfDn9mIpV9wkhAz/ieutmo68abh wE6Q== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699234508; x=1699839308; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=LJS1QleEbKLL6lqMd3jVMeLx97mZS1VyARUibf6AtMI=; b=xRGPWt6nrwP9h6q/L2Z9IMzzvLZMXOTCtZMwLH8A2rMztFGRxJ0Z66IZZTTiB36E4M ORWH1naNXktAP8V4YzKF9lh1y7dCMGp5sONS5IJdHC+veWmWL7jroO+t+nrZcuUwpm4z sLwq5L9Ye7naa92JjnVX9WfWJCrXovxuAqD0wTkhPVI4hR9BXeTyeqPMohXtVj0lB3hZ 9Y5Awml66CIbMI2YLWEx+SvlZgJnZG4cAr48SZveHNViB4f7b6fIVnRhWj2ztvDjGJ6H vYx6jHorUaFEJoMq7POR3jfB7MLzn8ebhEPXtHgcNYQsi6y6x5ReJlikd9PpKVJPmWRf DJhA== X-Gm-Message-State: AOJu0YzfBtNqzLYqBZED9abWe4YhDQwyNyN1ZJj4HBIy6VH72kYLy0zl LA3D1J6FBzah6glC1ZGG2tglTDrgyYjKQNz9GhojLiFfOA== X-Google-Smtp-Source: AGHT+IEJ4NUefUfdbPqWlqDRtftamENRnJWs1goGcOrjMRP/C/7KyVm7fVAiflQVjII9X6GrI3HM+dnXP0aSKQAsZXU= X-Received: by 2002:a17:906:c103:b0:9be:71ab:fb5e with SMTP id do3-20020a170906c10300b009be71abfb5emr11827244ejc.22.1699234508351; Sun, 05 Nov 2023 17:35:08 -0800 (PST) List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 References: In-Reply-To: From: Paul Procacci Date: Sun, 5 Nov 2023 20:34:57 -0500 Message-ID: Subject: Re: Openssl errors on FreeBSD To: iio7@tutanota.com Cc: Freebsd Questions Content-Type: multipart/alternative; boundary="00000000000042ad9c060971dd53" X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:15169, ipnet:2a00:1450::/32, country:US] X-Rspamd-Queue-Id: 4SNv6l1y1gz3dWL --00000000000042ad9c060971dd53 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Sun, Nov 5, 2023 at 8:03=E2=80=AFPM wrote: > Hi, > > I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 > Linux box. On my FreeBSD boxes I get openssl read errors on some differen= t > domains, such as: > > $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf > % Total % Received % Xferd Average Speed Time Time Time > Current > Dload Upload Total Spent Left > Speed > 12 763k 12 98139 0 0 377k 0 0:00:02 --:--:-- 0:00:02 > 378k > curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL > routines:ssl3_get_record:decryption failed or bad record mac, errno 0 > > I get the same with wget. > > I also have problems getting email and using SFTP: > > Email: > > ** IMAP error on mail.example.com: stream error > ** IMAP connection broken > > SFTP: > > Status: Connecting to www.example. com... > Status: Using username "foo". > Command: Pass: **************** > Error: FATAL ERROR: Incorrect MAC received on packet > Error: Could not connect to server > Status: Waiting to retry... > > This is only a problem on the two FreeBSD boxes, not on the OpenBSD or th= e > Linux box. All connected to the same network. The two FreeBSD boxes > runs 13.2-RELEASE-p4. > > Is this a problem with openssl on FreeBSD or what am I looking at here? > Kind regards > > > This has nothing to do with FreeBSD and everything to do with the openssl library. This error isn't present when I attempt to reproduce it here. My version of openssl is: OpenSSL 1.1.1t-freebsd 7 Feb 2023 What version are you attempting this with? ~Paul --=20 __________________ :(){ :|:& };: --00000000000042ad9c060971dd53 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable


On Sun, Nov 5, 2023 at 8:03=E2= =80=AFPM <iio7@tutanota.com>= wrote:
Hi,

I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 Lin= ux box. On my FreeBSD boxes I get openssl read errors on some different dom= ains, such as:

$ curl -O https://www.unixsheikh.com/= includes/files/the-biggest-myths.pdf
=C2=A0 % Total=C2=A0=C2=A0=C2=A0 % Received % Xferd=C2=A0 Average Speed=C2= =A0=C2=A0 Time=C2=A0=C2=A0=C2=A0 Time=C2=A0=C2=A0=C2=A0=C2=A0 Time=C2=A0 Cu= rrent
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Dload=C2=A0 Upload=C2=A0=C2=A0 T= otal=C2=A0=C2=A0 Spent=C2=A0=C2=A0=C2=A0 Left=C2=A0 Speed
12=C2=A0 763k=C2=A0=C2=A0 12 98139=C2=A0=C2=A0=C2=A0 0=C2=A0=C2=A0=C2=A0=C2= =A0 0=C2=A0=C2=A0 377k=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0=C2=A0 0:00:02 --:--:= --=C2=A0 0:00:02=C2=A0 378k
curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL routines:ss= l3_get_record:decryption failed or bad record mac, errno 0

I get the same with wget.

I also have problems getting email and using SFTP:

Email:

** IMAP error on mail.example.com: stream error
** IMAP connection broken

SFTP:

Status: Connecting to www.example. <http://www545.your-server.de&= gt;com...
Status: Using username "foo".
Command:=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Pass: **************** Error:=C2=A0 FATAL ERROR: Incorrect MAC received on packet
Error:=C2=A0 Could not connect to server
Status: Waiting to retry...

This is only a problem on the two FreeBSD boxes, not on the OpenBSD or the = Linux box. All connected to the same network. The two FreeBSD boxes runs=C2= =A013.2-RELEASE-p4.

Is this a problem with openssl on FreeBSD or what am I looking at here?
Kind regards



This has nothing to do with= FreeBSD and everything to do with the openssl library.
This erro= r isn't present when I attempt to reproduce it here.
My versi= on of openssl is:=C2=A0 OpenSSL 1.1.1t-freebsd =C2=A07 Feb 2023
W= hat version are you attempting this with?

~Pau= l

--
__________________

:(){ :|:= & };:
--00000000000042ad9c060971dd53-- From nobody Mon Nov 6 02:04:05 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SNvpc2nwhz50c7v for ; Mon, 6 Nov 2023 02:06:16 +0000 (UTC) (envelope-from doctor@doctor.nl2k.ab.ca) Received: from doctor.nl2k.ab.ca (doctor.nl2k.ab.ca [204.209.81.1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SNvpb2RR2z4DnX for ; Mon, 6 Nov 2023 02:06:15 +0000 (UTC) (envelope-from doctor@doctor.nl2k.ab.ca) Authentication-Results: mx1.freebsd.org; none Received: from doctor by doctor.nl2k.ab.ca with local (Exim 4.96.2 (FreeBSD)) (envelope-from ) id 1qzoyD-000MCm-1K; Sun, 05 Nov 2023 19:04:05 -0700 Date: Sun, 5 Nov 2023 19:04:05 -0700 From: The Doctor To: Paul Procacci Cc: iio7@tutanota.com, Freebsd Questions Subject: Re: Openssl errors on FreeBSD Message-ID: References: List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:6171, ipnet:204.209.81.0/24, country:CA] X-Rspamd-Queue-Id: 4SNvpb2RR2z4DnX On Sun, Nov 05, 2023 at 08:34:57PM -0500, Paul Procacci wrote: > On Sun, Nov 5, 2023 at 8:03???PM wrote: > > > Hi, > > > > I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 > > Linux box. On my FreeBSD boxes I get openssl read errors on some different > > domains, such as: > > > > $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf > > % Total % Received % Xferd Average Speed Time Time Time > > Current > > Dload Upload Total Spent Left > > Speed > > 12 763k 12 98139 0 0 377k 0 0:00:02 --:--:-- 0:00:02 > > 378k > > curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL > > routines:ssl3_get_record:decryption failed or bad record mac, errno 0 > > > > I get the same with wget. > > > > I also have problems getting email and using SFTP: > > > > Email: > > > > ** IMAP error on mail.example.com: stream error > > ** IMAP connection broken > > > > SFTP: > > > > Status: Connecting to www.example. com... > > Status: Using username "foo". > > Command: Pass: **************** > > Error: FATAL ERROR: Incorrect MAC received on packet > > Error: Could not connect to server > > Status: Waiting to retry... > > > > This is only a problem on the two FreeBSD boxes, not on the OpenBSD or the > > Linux box. All connected to the same network. The two FreeBSD boxes > > runs 13.2-RELEASE-p4. > > > > Is this a problem with openssl on FreeBSD or what am I looking at here? > > Kind regards > > > > > > > This has nothing to do with FreeBSD and everything to do with the openssl > library. > This error isn't present when I attempt to reproduce it here. > My version of openssl is: OpenSSL 1.1.1t-freebsd 7 Feb 2023 > What version are you attempting this with? > > ~Paul > Cam you upate to openssl 1.1.1w? > -- > __________________ > > :(){ :|:& };: -- Member - Liberal International This is doctor@nk.ca Ici doctor@nk.ca Yahweh, King & country!Never Satan President Republic!Beware AntiChrist rising! Look at Psalms 14 and 53 on Atheism ; unsubscribe from Google Groups to be seen Suffering will continue until we stop believing lies. -unknown Beware https://mindspring.com From nobody Mon Nov 6 08:46:34 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SP4jF69nyz4ypFy for ; Mon, 6 Nov 2023 08:47:13 +0000 (UTC) (envelope-from odhiambo@gmail.com) Received: from mail-lj1-x233.google.com (mail-lj1-x233.google.com [IPv6:2a00:1450:4864:20::233]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SP4jD6v5Kz3gs0 for ; Mon, 6 Nov 2023 08:47:12 +0000 (UTC) (envelope-from odhiambo@gmail.com) Authentication-Results: mx1.freebsd.org; none Received: by mail-lj1-x233.google.com with SMTP id 38308e7fff4ca-2c4fdf94666so55699371fa.2 for ; Mon, 06 Nov 2023 00:47:12 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699260431; x=1699865231; darn=freebsd.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=G87Dr0aT/EtILcQ4PEmyWXRRsNBMOQA1e1wiZy+Yj8s=; b=GJHEPIhqbrgAxHlM9zO5mBtu/9KQMEYKMxmCxK14yU5POhykJX/HN6V0+rNmTFfHvW 4NI3f1RXgZMk4ldqmaqDFGM7b9U5Of9ndaEmFzlvioPi69PbEGREYhvfdKJ2wgLzcsaJ b8AZJpGWQdETP3i7Mifb63UQDu3K6Qg4KKClz1K/e+Ts8HJSet03YmeE/v4yNV77ANoh 9hp+Ybods/wGiGptXEa5rZNsqkjk0yMMTI4c6Cv8oxoGoZuNSZF4d/26OffgnnkRXqCh xbUBYheOdopQgJmgaIq56VELZB5W2QuhndnyCDIWvR5rQGNPliSaxvgYEYWJA5jf9TnJ X6vg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699260431; x=1699865231; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=G87Dr0aT/EtILcQ4PEmyWXRRsNBMOQA1e1wiZy+Yj8s=; b=b1O7JJlNE47xLQtuq/iap0/HI5QiaHm3Gurm4y7YzKK3RhtFc5lvRpxylieT+uiiwE p17rfGrWcENj/nuMq7yAUQm2tqEI7blH9sUCxxc6lxoAE9RzBeWAQSfgLAvAYj7jX3Zo +aKkUbWNP8iO8O0WBGu5q9yz7Z5GPcPvECYY5wPAxlwAgwnhXiQxlcVjKTM8e+hPNgJx JSRqNBb6IqSP6WvGowU0++rqakYKodh+kGpEI56QnXqaccxyzd8GeJGwEqueY4cxbo4l Hdl1ylv2ahoKGCFC+BUYYK8RinY/Q+QxQ1y2eZgWjoZZA2nFu1+flNny07Q37Jp2UAWD qzcA== X-Gm-Message-State: AOJu0Yx/JXntK635D6YCFeVDrqpVA0gGKoNJr9Vv/Xh5nl0EbGn2HF6C TArFYl6wSE3QGbnTbs9ymtHzE0nAVr2Bi44Z6zp3ZevKMC+v2G+k X-Google-Smtp-Source: AGHT+IFxYvCnDZXt9PXTphh8B6DIKnk3JuPoY351kN264wdxnaOXDUZXtHFc1qAr8FdwRktpnES6D/vDoBf/bZUeNho= X-Received: by 2002:a2e:b748:0:b0:2c5:1ca8:d433 with SMTP id k8-20020a2eb748000000b002c51ca8d433mr20947610ljo.36.1699260430785; Mon, 06 Nov 2023 00:47:10 -0800 (PST) List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 References: In-Reply-To: From: Odhiambo Washington Date: Mon, 6 Nov 2023 11:46:34 +0300 Message-ID: Subject: Re: Openssl errors on FreeBSD To: iio7@tutanota.com Cc: Freebsd Questions Content-Type: multipart/alternative; boundary="0000000000005ba056060977e6a0" X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:15169, ipnet:2a00:1450::/32, country:US] X-Rspamd-Queue-Id: 4SP4jD6v5Kz3gs0 --0000000000005ba056060977e6a0 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Mon, Nov 6, 2023 at 4:02=E2=80=AFAM wrote: > Hi, > > I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 > Linux box. On my FreeBSD boxes I get openssl read errors on some differen= t > domains, such as: > > $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf > % Total % Received % Xferd Average Speed Time Time Time > Current > Dload Upload Total Spent Left > Speed > 12 763k 12 98139 0 0 377k 0 0:00:02 --:--:-- 0:00:02 > 378k > curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL > routines:ssl3_get_record:decryption failed or bad record mac, errno 0 > > I get the same with wget. > > I also have problems getting email and using SFTP: > > Email: > > ** IMAP error on mail.example.com: stream error > ** IMAP connection broken > > SFTP: > > Status: Connecting to www.example. com... > Status: Using username "foo". > Command: Pass: **************** > Error: FATAL ERROR: Incorrect MAC received on packet > Error: Could not connect to server > Status: Waiting to retry... > > This is only a problem on the two FreeBSD boxes, not on the OpenBSD or th= e > Linux box. All connected to the same network. The two FreeBSD boxes > runs 13.2-RELEASE-p4. > > Is this a problem with openssl on FreeBSD or what am I looking at here? > [11:44 ~ ]$ openssl version OpenSSL 1.1.1t-freebsd 7 Feb 2023 [11:45 ~ ]$ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths. pdf % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 763k 100 763k 0 0 443k 0 0:00:01 0:00:01 --:--:-- 443k [11:45 ~ ]$ uname -a FreeBSD gw 13.2-RELEASE-p4 FreeBSD 13.2-RELEASE-p4 GENERIC amd64 --=20 Best regards, Odhiambo WASHINGTON, Nairobi,KE +254 7 3200 0004/+254 7 2274 3223 "Oh, the cruft.", egrep -v '^$|^.*#' =C2=AF\_(=E3=83=84)_/=C2=AF :-) [How to ask smart questions: http://www.catb.org/~esr/faqs/smart-questions.html] --0000000000005ba056060977e6a0 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable


=
On Mon, Nov 6, 2023 at 4:02=E2=80=AFA= M <iio7@tutanota.com> wrote:=
Hi,

I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 Lin= ux box. On my FreeBSD boxes I get openssl read errors on some different dom= ains, such as:

$ curl -O https://www.unixsheikh.com/= includes/files/the-biggest-myths.pdf
=C2=A0 % Total=C2=A0=C2=A0=C2=A0 % Received % Xferd=C2=A0 Average Speed=C2= =A0=C2=A0 Time=C2=A0=C2=A0=C2=A0 Time=C2=A0=C2=A0=C2=A0=C2=A0 Time=C2=A0 Cu= rrent
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Dload=C2=A0 Upload=C2=A0=C2=A0 T= otal=C2=A0=C2=A0 Spent=C2=A0=C2=A0=C2=A0 Left=C2=A0 Speed
12=C2=A0 763k=C2=A0=C2=A0 12 98139=C2=A0=C2=A0=C2=A0 0=C2=A0=C2=A0=C2=A0=C2= =A0 0=C2=A0=C2=A0 377k=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0=C2=A0 0:00:02 --:--:= --=C2=A0 0:00:02=C2=A0 378k
curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL routines:ss= l3_get_record:decryption failed or bad record mac, errno 0

I get the same with wget.

I also have problems getting email and using SFTP:

Email:

** IMAP error on mail.example.com: stream error
** IMAP connection broken

SFTP:

Status: Connecting to www.example. <http://www545.your-server.de&= gt;com...
Status: Using username "foo".
Command:=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Pass: **************** Error:=C2=A0 FATAL ERROR: Incorrect MAC received on packet
Error:=C2=A0 Could not connect to server
Status: Waiting to retry...

This is only a problem on the two FreeBSD boxes, not on the OpenBSD or the = Linux box. All connected to the same network. The two FreeBSD boxes runs=C2= =A013.2-RELEASE-p4.

Is this a problem with openssl on FreeBSD or what am I looking at here?
=

[11:44 ~ ]$ openssl versionOpenSSL 1.1.1t-freebsd =C2=A07 Feb 2023
[11:45 ~ ]$ curl -O https://www.un= ixsheikh.com/includes/files/the-biggest-myths. =C2=A0 =C2=A0 =C2=A0 =C2= =A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 = =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2= =A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 = =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0pdf
=C2=A0 % Total =C2= =A0 =C2=A0% Received % Xferd =C2=A0Average Speed =C2=A0 Time =C2=A0 =C2=A0T= ime =C2=A0 =C2=A0 Time =C2=A0Current
=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 = =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2= =A0 =C2=A0Dload =C2=A0Upload =C2=A0 Total =C2=A0 Spent =C2=A0 =C2=A0Left = =C2=A0Speed
100 =C2=A0763k =C2=A0100 =C2=A0763k =C2=A0 =C2=A00 =C2=A0 = =C2=A0 0 =C2=A0 443k =C2=A0 =C2=A0 =C2=A00 =C2=A00:00:01 =C2=A00:00:01 --:-= -:-- =C2=A0443k
[11:45 ~ ]$ uname -a
FreeBSD gw 13.2-RELEASE-p4 FreeB= SD 13.2-RELEASE-p4 GENERIC amd64

--
Best regards,
Odhiambo= WASHINGTON,
Nairobi,KE
+254 7 3200 0004/+254 7 2274 3223
"Oh, the cruft.",=C2=A0egrep -v = 9;^$|^.*#'=C2=A0=C2=AF\_(=E3=83=84)_/=C2=AF=C2=A0:-)
[How to ask smart questions:=C2=A0http://www.catb.org/~esr/faqs/smart-questions.h= tml]
--0000000000005ba056060977e6a0-- From nobody Mon Nov 6 15:06:15 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPF6f53Lxz4ywZx for ; Mon, 6 Nov 2023 15:06:18 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPF6d6WDvz3R28 for ; Mon, 6 Nov 2023 15:06:17 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=3xe88lI+; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 62D5DFA01B3 for ; Mon, 6 Nov 2023 15:06:15 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699283175; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=p0Mz3pTfFSysA7fm37Qntumm7eptfS/xASIMIPTP2nQ=; b=3xe88lI+gfTQ3RcFJQHt5x02SZbmvXzvQgFGJa+LFikkACJDn09OtH9zJtxDHoZN WxlkA4mNOpaI77dwjlPxt3gitM+esAAAW4C/PwZCw+PyZe+Fv3NKUfGNNQFxD1prFIH fEV1rSVmM17YZ8FH2WbZi/3K7yNffz7gUBQSUbya5OX9pjN6zdw9JhmN2ErMpWdjgaY Te3KPmcpX5QuJgpZ8d21K1qYqwRAfdBy1IFoCeZ0HuNRDAF8QVlLgUqX6bOpobW+IVR vXxb2Ibcwo9eNAiE14ZadJbo/FglgvX9uc0E6ch5m1awm533vTOtC03BeB+pMuE8N/n pHLk0Cb/3Q== Date: Mon, 6 Nov 2023 16:06:15 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: References: Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.30 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-0.999]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SPF6d6WDvz3R28 X-Spamd-Bar: ---- > This has nothing to do with FreeBSD and everything to do with the openssl= library. > This error isn't present when I attempt to reproduce it here. > My version of openssl is:=C2=A0 OpenSSL 1.1.1t-freebsd =C2=A07 Feb 2023 > What version are you attempting this with? > That is what I suspected. I fails on both boxes running the same version of= FreeBSD and OpenSSL. $ openssl version OpenSSL 1.1.1t-freebsd=C2=A0 7 Feb 2023 $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf =C2=A0 % Total=C2=A0=C2=A0=C2=A0 % Received % Xferd=C2=A0 Average Speed=C2= =A0=C2=A0 Time=C2=A0=C2=A0=C2=A0 Time=C2=A0=C2=A0=C2=A0=C2=A0 Time=C2=A0 Cu= rrent =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Dload=C2=A0 Upload=C2=A0=C2=A0 T= otal=C2=A0=C2=A0 Spent=C2=A0=C2=A0=C2=A0 Left=C2=A0 Speed =C2=A0 4=C2=A0 763k=C2=A0=C2=A0=C2=A0 4 32639=C2=A0=C2=A0=C2=A0 0=C2=A0=C2= =A0=C2=A0=C2=A0 0=C2=A0=C2=A0 265k=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0=C2=A0 0:= 00:02 --:--:--=C2=A0 0:00:02=C2=A0 267k curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL routines:ss= l3_get_record:decryption failed or bad record mac, errno 0 $ uname -a FreeBSD 13.2-RELEASE-p4 FreeBSD 13.2-RELEASE-p4 GENERIC amd64 On the OpenBSD box: $ openssl version LibreSSL 3.8.2 $ curl -O https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf= =C2=A0 =C2=A0 % Total=C2=A0=C2=A0=C2=A0 % Received % Xferd=C2=A0 Average Speed=C2= =A0=C2=A0 Time=C2=A0=C2=A0=C2=A0 Time=C2=A0=C2=A0=C2=A0=C2=A0 Time=C2=A0 Cu= rrent =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Dload=C2=A0 Upload=C2=A0=C2=A0 T= otal=C2=A0=C2=A0 Spent=C2=A0=C2=A0=C2=A0 Left=C2=A0 Speed 100=C2=A0 763k=C2=A0 100=C2=A0 763k=C2=A0=C2=A0=C2=A0 0=C2=A0=C2=A0=C2=A0= =C2=A0 0=C2=A0 1730k=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0 --:--:-- --:--:-- --:-= -:-- 1740k I am not sure how to progress from here. From nobody Mon Nov 6 19:45:33 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPMK25wXfz4yrfw for ; Mon, 6 Nov 2023 19:45:42 +0000 (UTC) (envelope-from darcy@druid.net) Received: from mail.vex.net (mail.vex.net [98.158.132.68]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPMK21MZnz3JFG for ; Mon, 6 Nov 2023 19:45:41 +0000 (UTC) (envelope-from darcy@druid.net) Authentication-Results: mx1.freebsd.org; dkim=none; spf=pass (mx1.freebsd.org: domain of darcy@druid.net designates 98.158.132.68 as permitted sender) smtp.mailfrom=darcy@druid.net; dmarc=pass (policy=reject) header.from=druid.net Received: from [192.168.215.109] (unknown [98.186.198.48]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) (Authenticated sender: darcy) by mail.vex.net (Postfix) with ESMTPSA id D7D2E3D208 for ; Mon, 6 Nov 2023 14:45:34 -0500 (EST) Message-ID: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> Date: Mon, 6 Nov 2023 13:45:33 -0600 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Content-Language: en-US From: D'Arcy Cain To: freebsd-questions@freebsd.org Subject: Trying to replace a bashism in bourne sh Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-Spamd-Result: default: False [-3.78 / 15.00]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.99)[-0.994]; DMARC_POLICY_ALLOW(-0.50)[druid.net,reject]; R_SPF_ALLOW(-0.20)[+mx]; MIME_GOOD(-0.10)[text/plain]; XM_UA_NO_VERSION(0.01)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; R_DKIM_NA(0.00)[]; ASN(0.00)[asn:19842, ipnet:98.158.132.0/24, country:CA]; MIME_TRACE(0.00)[0:+]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; FROM_HAS_DN(0.00)[]; ARC_NA(0.00)[]; RCVD_TLS_ALL(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; TO_DN_NONE(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; MID_RHS_MATCH_FROM(0.00)[] X-Rspamd-Queue-Id: 4SPMK21MZnz3JFG X-Spamd-Bar: --- I need to do this; ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" Problem is that I need to do this at boot time but then it runs as bourne sh. Does anyone have an equivalent for sh? Cheers. -- D'Arcy J.M. Cain | Democracy is three wolves http://www.druid.net/darcy/ | and a sheep voting on +1 416 788 2246 (DoD#0082) (eNTP) | what's for dinner. IM: darcy@Vex.Net, VoIP: sip:darcy@druid.net From nobody Mon Nov 6 20:07:02 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPMnz2WYtz4ywmS for ; Mon, 6 Nov 2023 20:07:19 +0000 (UTC) (envelope-from bc979@lafn.org) Received: from mail.sermon-archive.info (sermon-archive.info [47.181.130.121]) by mx1.freebsd.org (Postfix) with ESMTP id 4SPMny5NmTz3MXp for ; Mon, 6 Nov 2023 20:07:18 +0000 (UTC) (envelope-from bc979@lafn.org) Authentication-Results: mx1.freebsd.org; none Received: from smtpclient.apple (unknown [10.0.1.251]) by mail.sermon-archive.info (Postfix) with ESMTPSA id 4SPMnr2ZfYz2gF5D; Mon, 6 Nov 2023 12:07:12 -0800 (PST) From: Doug Hardie Message-Id: Content-Type: multipart/alternative; boundary="Apple-Mail=_60AD5DBA-7FED-4A6C-B22C-FE01A9487B41" List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.700.6\)) Subject: Re: Openssl errors on FreeBSD Date: Mon, 6 Nov 2023 12:07:02 -0800 In-Reply-To: Cc: Freebsd Questions To: iio7@tutanota.com References: X-Mailer: Apple Mail (2.3731.700.6) X-Virus-Scanned: clamav-milter 1.1.2 at mail X-Virus-Status: Clean X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:5650, ipnet:47.181.128.0/18, country:US] X-Rspamd-Queue-Id: 4SPMny5NmTz3MXp --Apple-Mail=_60AD5DBA-7FED-4A6C-B22C-FE01A9487B41 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=us-ascii > On Nov 6, 2023, at 07:06, iio7@tutanota.com wrote: >=20 >=20 >=20 >> This has nothing to do with FreeBSD and everything to do with the = openssl library. >> This error isn't present when I attempt to reproduce it here. >> My version of openssl is: OpenSSL 1.1.1t-freebsd 7 Feb 2023 >> What version are you attempting this with? >>=20 > That is what I suspected. I fails on both boxes running the same = version of FreeBSD and OpenSSL. > $ openssl version > OpenSSL 1.1.1t-freebsd 7 Feb 2023 >=20 > $ curl -O = https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf > % Total % Received % Xferd Average Speed Time Time Time = Current > Dload Upload Total Spent Left = Speed > 4 763k 4 32639 0 0 265k 0 0:00:02 --:--:-- = 0:00:02 267k > curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: error:1408F119:SSL = routines:ssl3_get_record:decryption failed or bad record mac, errno 0 >=20 > $ uname -a > FreeBSD 13.2-RELEASE-p4 FreeBSD 13.2-RELEASE-p4 GENERIC amd64 >=20 > On the OpenBSD box: >=20 > $ openssl version > LibreSSL 3.8.2 >=20 > $ curl -O = https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf=20 > % Total % Received % Xferd Average Speed Time Time Time = Current > Dload Upload Total Spent Left = Speed > 100 763k 100 763k 0 0 1730k 0 --:--:-- --:--:-- = --:--:-- 1740k >=20 > I am not sure how to progress from here. You might try: openssl s_client -connect www.unixsheikh.com:443 = and see what it reports. Warning, s_client generates a lot of = diagnostic data during connection. -- Doug --Apple-Mail=_60AD5DBA-7FED-4A6C-B22C-FE01A9487B41 Content-Transfer-Encoding: quoted-printable Content-Type: text/html; charset=us-ascii
On Nov 6, 2023, = at 07:06, iio7@tutanota.com wrote:



This has nothing to do with FreeBSD and everything to do = with the openssl library.
This error isn't present when I attempt to = reproduce it here.
My version of openssl is:  OpenSSL = 1.1.1t-freebsd  7 Feb 2023
What version are you attempting this = with?

That is what I suspected. I fails on both = boxes running the same version of FreeBSD and OpenSSL.
$ openssl = version
OpenSSL 1.1.1t-freebsd  7 Feb 2023

$ curl -O = https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf
  = % Total    % Received % Xferd  Average = Speed   Time    Time     = Time  = Current
          &nb= sp;            = ;          Dload  = Upload   Total   Spent    Left  = Speed
  4  763k    4 32639    = 0     0   = 265k      0  0:00:02 --:--:--  = 0:00:02  267k
curl: (56) OpenSSL SSL_read: OpenSSL/1.1.1t: = error:1408F119:SSL routines:ssl3_get_record:decryption failed or bad = record mac, errno 0

$ uname -a
FreeBSD 13.2-RELEASE-p4 FreeBSD = 13.2-RELEASE-p4 GENERIC amd64

On the OpenBSD box:

$ = openssl version
LibreSSL 3.8.2

$ curl -O = https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf 
&= nbsp; % Total    % Received % Xferd  Average = Speed   Time    Time     = Time  = Current
          &nb= sp;            = ;          Dload  = Upload   Total   Spent    Left  = Speed
100  763k  100  763k    = 0     0  1730k      0 = --:--:-- --:--:-- --:--:-- 1740k

I am not sure how to progress = from here.

You might = try:

openssl s_client -connect www.unixsheikh.com:443

and see what it reports.  Warning, s_client = generates a lot of diagnostic data during = connection.

-- = Doug


= --Apple-Mail=_60AD5DBA-7FED-4A6C-B22C-FE01A9487B41-- From nobody Mon Nov 6 21:05:12 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPP4t1pMpz508Yp for ; Mon, 6 Nov 2023 21:05:18 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost1.sentex.ca (smarthost1.sentex.ca [IPv6:2607:f3e0:0:1::12]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smarthost1.sentex.ca", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPP4s5Z8Hz3XW9 for ; Mon, 6 Nov 2023 21:05:17 +0000 (UTC) (envelope-from mike@sentex.net) Authentication-Results: mx1.freebsd.org; none Received: from pyroxene2a.sentex.ca (pyroxene19.sentex.ca [199.212.134.19]) by smarthost1.sentex.ca (8.17.1/8.16.1) with ESMTPS id 3A6L5Bcl004390 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=FAIL); Mon, 6 Nov 2023 16:05:11 -0500 (EST) (envelope-from mike@sentex.net) Received: from [IPV6:2607:f3e0:0:4:e53b:e6a:e24f:b6bc] ([IPv6:2607:f3e0:0:4:e53b:e6a:e24f:b6bc]) by pyroxene2a.sentex.ca (8.17.1/8.15.2) with ESMTPS id 3A6L5Aq4002654 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NO); Mon, 6 Nov 2023 16:05:11 -0500 (EST) (envelope-from mike@sentex.net) Message-ID: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> Date: Mon, 6 Nov 2023 16:05:12 -0500 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Openssl errors on FreeBSD Content-Language: en-US To: iio7@tutanota.com, Freebsd Questions References: From: mike tancsa Autocrypt: addr=mike@sentex.net; keydata= xsBNBFywzOMBCACoNFpwi5MeyEREiCeHtbm6pZJI/HnO+wXdCAWtZkS49weOoVyUj5BEXRZP xflV2ib2hflX4nXqhenaNiia4iaZ9ft3I1ebd7GEbGnsWCvAnob5MvDZyStDAuRxPJK1ya/s +6rOvr+eQiXYNVvfBhrCfrtR/esSkitBGxhUkBjOti8QwzD71JVF5YaOjBAs7jZUKyLGj0kW yDg4jUndudWU7G2yc9GwpHJ9aRSUN8e/mWdIogK0v+QBHfv/dsI6zVB7YuxCC9Fx8WPwfhDH VZC4kdYCQWKXrm7yb4TiVdBh5kgvlO9q3js1yYdfR1x8mjK2bH2RSv4bV3zkNmsDCIxjABEB AAHNHW1pa2UgdGFuY3NhIDxtaWtlQHNlbnRleC5uZXQ+wsCOBBMBCAA4FiEEmuvCXT0aY6hs 4SbWeVOEFl5WrMgFAl+pQfkCGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeVOEFl5W rMiN6ggAk3H5vk8QnbvGbb4sinxZt/wDetgk0AOR9NRmtTnPaW+sIJEfGBOz47Xih+f7uWJS j+uvc9Ewn2Z7n8z3ZHJlLAByLVLtcNXGoRIGJ27tevfOaNqgJHBPbFOcXCBBFTx4MYMM4iAZ cDT5vsBTSaM36JZFtHZBKkuFEItbA/N8ZQSHKdTYMIA7A3OCLGbJBqloQ8SlW4MkTzKX4u7R yefAYQ0h20x9IqC5Ju8IsYRFacVZconT16KS81IBceO42vXTN0VexbVF2rZIx3v/NT75r6Vw 0FlXVB1lXOHKydRA2NeleS4NEG2vWqy/9Boj0itMfNDlOhkrA/0DcCurMpnpbM7ATQRcsMzk AQgA1Dpo/xWS66MaOJLwA28sKNMwkEk1Yjs+okOXDOu1F+0qvgE8sVmrOOPvvWr4axtKRSG1 t2QUiZ/ZkW/x/+t0nrM39EANV1VncuQZ1ceIiwTJFqGZQ8kb0+BNkwuNVFHRgXm1qzAJweEt RdsCMohB+H7BL5LGCVG5JaU0lqFU9pFP40HxEbyzxjsZgSE8LwkI6wcu0BLv6K6cLm0EiHPO l5G8kgRi38PS7/6s3R8QDsEtbGsYy6O82k3zSLIjuDBwA9GRaeigGppTxzAHVjf5o9KKu4O7 gC2KKVHPegbXS+GK7DU0fjzX57H5bZ6komE5eY4p3oWT/CwVPSGfPs8jOwARAQABwsB2BBgB CAAgFiEEmuvCXT0aY6hs4SbWeVOEFl5WrMgFAl+pQfkCGwwACgkQeVOEFl5WrMiVqwf9GwU8 c6cylknZX8QwlsVudTC8xr/L17JA84wf03k3d4wxP7bqy5AYy7jboZMbgWXngAE/HPQU95NM aukysSnknzoIpC96XZJ0okLBXVS6Y0ylZQ+HrbIhMpuQPoDweoF5F9wKrsHRoDaUK1VR706X rwm4HUzh7Jk+auuMYfuCh0FVlFBEuiJWMLhg/5WCmcRfiuB6F59ZcUQrwLEZeNhF2XJV4KwB Tlg7HCWO/sy1foE5noaMyACjAtAQE9p5kGYaj+DuRhPdWUTsHNuqrhikzIZd2rrcMid+ktb0 NvtvswzMO059z1YGMtGSqQ4srCArju+XHIdTFdiIYbd7+jeehg== In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Scanned-By: MIMEDefang 2.84 on 64.7.153.18 X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:11647, ipnet:2607:f3e0::/32, country:CA] X-Rspamd-Queue-Id: 4SPP4s5Z8Hz3XW9 On 11/5/2023 8:02 PM, iio7@tutanota.com wrote: > Hi, > > I have four machines in my office, 2 FreeBSD boxes, 1 OpenBSD box and 1 Linux box. On my FreeBSD boxes I get openssl read errors on some different domains, such as: > > This is only a problem on the two FreeBSD boxes, not on the OpenBSD or the Linux box. All connected to the same network. The two FreeBSD boxes runs 13.2-RELEASE-p4. What does ldd curl show on your problem boxes ? And what versions of curl and openssl do you have installed ? i.e.  pkg info | egrep "curl|openssl" ldd /usr/local/bin/curl /usr/local/bin/curl:         libcurl.so.4 => /usr/local/lib/libcurl.so.4 (0xa64a877e000)         libz.so.6 => /lib/libz.so.6 (0xa64a898b000)         libkrb5.so.11 => /usr/lib/libkrb5.so.11 (0xa64a91d5000)         libgssapi.so.10 => /usr/lib/libgssapi.so.10 (0xa64a9b61000)         libgssapi_krb5.so.10 => /usr/lib/libgssapi_krb5.so.10 (0xa64aa2a2000)         libthr.so.3 => /lib/libthr.so.3 (0xa64aa848000)         libc.so.7 => /lib/libc.so.7 (0xa64aacbd000)         libnghttp2.so.14 => /usr/local/lib/libnghttp2.so.14 (0xa64ac95c000)         libssh2.so.1 => /usr/local/lib/libssh2.so.1 (0xa64aba9f000)         libpsl.so.5 => /usr/local/lib/libpsl.so.5 (0xa64acb7d000)         libssl.so.111 => /usr/lib/libssl.so.111 (0xa64adcb3000)         libheimntlm.so.11 => /usr/lib/libheimntlm.so.11 (0xa64ad922000)         libhx509.so.11 => /usr/lib/libhx509.so.11 (0xa64ae065000)         libcom_err.so.5 => /usr/lib/libcom_err.so.5 (0xa64ae798000)         libcrypto.so.111 => /lib/libcrypto.so.111 (0xa64af53b000)         libasn1.so.11 => /usr/lib/libasn1.so.11 (0xa64b0472000)         libwind.so.11 => /usr/lib/libwind.so.11 (0xa64b124a000)         libheimbase.so.11 => /usr/lib/libheimbase.so.11 (0xa64b133d000)         libroken.so.11 => /usr/lib/libroken.so.11 (0xa64b2906000)         libcrypt.so.5 => /lib/libcrypt.so.5 (0xa64b22b7000)         libprivateheimipcc.so.11 => /usr/lib/libprivateheimipcc.so.11 (0xa64b3891000)         libidn2.so.0 => /usr/local/lib/libidn2.so.0 (0xa64b41bc000)         libunistring.so.5 => /usr/local/lib/libunistring.so.5 (0xa64b484a000)         [vdso] (0x7ffffffff000) From nobody Tue Nov 7 08:21:03 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPh4w3BYBz50Jvy for ; Tue, 7 Nov 2023 08:21:20 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Received: from mailout.qeng-ho.org (mailout.qeng-ho.org [217.155.128.244]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPh4w12Spz4fb0 for ; Tue, 7 Nov 2023 08:21:20 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Authentication-Results: mx1.freebsd.org; none Received: from [IPV6:2a02:8010:64c9:1::2] (unknown [IPv6:2a02:8010:64c9:1::2]) by mailout.qeng-ho.org (Postfix) with ESMTP id 691F5F6A13; Tue, 7 Nov 2023 08:21:12 +0000 (GMT) Message-ID: <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> Date: Tue, 7 Nov 2023 07:21:03 -0100 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Trying to replace a bashism in bourne sh Content-Language: en-GB To: D'Arcy Cain , freebsd-questions@freebsd.org References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> From: Arthur Chance In-Reply-To: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:13037, ipnet:217.155.0.0/16, country:GB] X-Rspamd-Queue-Id: 4SPh4w12Spz4fb0 On 06/11/2023 18:45, D'Arcy Cain wrote: > I need to do this; > >   ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" > > Problem is that I need to do this at boot time but then it runs as > bourne sh.  Does anyone have an equivalent for sh? I'm not totally familiar with bash but that (16#c0a8c0) is a hexadecimal number equivalent to an address triplet 192.168.192. I'd guess ${me} is also a 2 digit hex value and for some reason 100 is added. The whole thing is assembling an IPv4 CIDR network address (the /24 is the netmask bit). Try something along the lines of ifconfig_eth3="192.168.192."$((me_in_decimal+100))"/24" if you can arrange for ${me} to be specified in decimal rather than hex. If you can't then something like ifconfig_eth3="192.168.192."$(hex_to_decimal_plus_100 ${me})"/24" where implementing the function hex_to_decimal_plus_100 is left as an exercise for the reader. :-) -- We build our computer systems the way we build our cities; over time, without a plan, on top of ruins. — Ellen Ullman From nobody Tue Nov 7 08:24:51 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPh935sRPz50Kmt for ; Tue, 7 Nov 2023 08:24:55 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Received: from mailout.qeng-ho.org (mailout.qeng-ho.org [217.155.128.244]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPh925Pjnz3CMy for ; Tue, 7 Nov 2023 08:24:54 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Authentication-Results: mx1.freebsd.org; dkim=none; spf=pass (mx1.freebsd.org: domain of freebsd@qeng-ho.org designates 217.155.128.244 as permitted sender) smtp.mailfrom=freebsd@qeng-ho.org; dmarc=none Received: from [IPV6:2a02:8010:64c9:1::2] (unknown [IPv6:2a02:8010:64c9:1::2]) by mailout.qeng-ho.org (Postfix) with ESMTP id A91A7F6A90; Tue, 7 Nov 2023 08:24:53 +0000 (GMT) Message-ID: Date: Tue, 7 Nov 2023 07:24:51 -0100 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Trying to replace a bashism in bourne sh Content-Language: en-GB From: Arthur Chance To: D'Arcy Cain , freebsd-questions@freebsd.org References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> In-Reply-To: <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Spamd-Result: default: False [-3.28 / 15.00]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-0.998]; NEURAL_HAM_SHORT(-0.99)[-0.992]; R_SPF_ALLOW(-0.20)[+ip4:217.155.128.240/29]; MIME_GOOD(-0.10)[text/plain]; XM_UA_NO_VERSION(0.01)[]; FROM_EQ_ENVFROM(0.00)[]; R_DKIM_NA(0.00)[]; ARC_NA(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_COUNT_ONE(0.00)[1]; ASN(0.00)[asn:13037, ipnet:217.155.0.0/16, country:GB]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; TO_MATCH_ENVRCPT_SOME(0.00)[]; RCVD_TLS_LAST(0.00)[]; FROM_HAS_DN(0.00)[]; RCPT_COUNT_TWO(0.00)[2]; TO_DN_SOME(0.00)[]; DMARC_NA(0.00)[qeng-ho.org]; MID_RHS_MATCH_FROM(0.00)[] X-Rspamd-Queue-Id: 4SPh925Pjnz3CMy X-Spamd-Bar: --- On 07/11/2023 07:21, Arthur Chance wrote: > On 06/11/2023 18:45, D'Arcy Cain wrote: >> I need to do this; >> >>   ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" >> >> Problem is that I need to do this at boot time but then it runs as >> bourne sh.  Does anyone have an equivalent for sh? > > I'm not totally familiar with bash but that (16#c0a8c0) is a hexadecimal > number equivalent to an address triplet 192.168.192. I'd guess ${me} is > also a 2 digit hex value and for some reason 100 is added. The whole > thing is assembling an IPv4 CIDR network address (the /24 is the netmask > bit). Try something along the lines of > > ifconfig_eth3="192.168.192."$((me_in_decimal+100))"/24" Always reread twice. That should of course be ifconfig_eth3="inet 192.168.192."$((me_in_decimal+100))"/24" > > if you can arrange for ${me} to be specified in decimal rather than hex. > If you can't then something like > > ifconfig_eth3="192.168.192."$(hex_to_decimal_plus_100 ${me})"/24" and this ifconfig_eth3="inet 192.168.192."$(hex_to_decimal_plus_100 ${me})"/24" > where implementing the function hex_to_decimal_plus_100 is left as an > exercise for the reader. :-) > -- We build our computer systems the way we build our cities; over time, without a plan, on top of ruins. — Ellen Ullman From nobody Tue Nov 7 10:54:11 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPlTL2sg5z50q5c for ; Tue, 7 Nov 2023 10:54:14 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPlTK1jflz3XYX for ; Tue, 7 Nov 2023 10:54:13 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=HMGhS52+; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 13609FBFACA for ; Tue, 7 Nov 2023 10:54:11 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699354451; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=KUkDoBJze56DbioX6RlLvjmyfLWgiGJ8Xky7T77IELY=; b=HMGhS52+1YeilFEAkFNpX7hNl8Dsz1UAtcL1gWgYoPNYTcLtRB1FmENuMTc9hRTQ QXCJPc5rLLXcPpXrLchqQRG6fDSM+KTMFalMuY8sQEUq3f0EPfWFFeFKGItJw95osbP TYJtmSRBNDDVs9W7+FjuiEA2wzLR1B77e2wdVnN7G3sZoZzwgJyyzW6HNy7qpgrHEw+ YCVw302cR0u8V8PC6LwgssHV94e8DtX56MVAfYgIOCi/vhngJqHwsxe0Kvfr5o86Sij VR5aogzEyowCKyF3PqdXrMLsJqZIUdGCecj4QbpUbBD3OyTX5EZJqjEH95x28AU2vsK ooaiRlOnYQ== Date: Tue, 7 Nov 2023 11:54:11 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.29 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.99)[-0.994]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SPlTK1jflz3XYX X-Spamd-Bar: ---- > What does ldd curl show on your problem boxes ? And what versions of curl= and openssl do you have installed ? i.e. > > =C2=A0pkg info | egrep "curl|openssl" > OpenSSL is in base. It's: $ openssl version OpenSSL 1.1.1t-freebsd=C2=A0 7 Feb 2023 $ curl --version curl 8.4.0 (amd64-portbld-freebsd13.2) libcurl/8.4.0 OpenSSL/1.1.1t zlib/1.= 2.13 libpsl/0.21.2 (+libidn2/2.3.4) libssh2/1.11.0 nghttp2/1.58.0 Release-Date: 2023-10-11 Protocols: dict file ftp ftps gopher gophers http https imap imaps pop3 pop= 3s rtsp scp sftp smtp smtps telnet tftp Features: alt-svc AsynchDNS GSS-API HSTS HTTP2 HTTPS-proxy IPv6 Kerberos La= rgefile libz NTLM NTLM_WB PSL SPNEGO SSL threadsafe TLS-SRP UnixSockets It's the same problem with wget, since it's OpenSSL related. $ wget https://www.unixsheikh.com/includes/files/the-biggest-myths.pdf --2023-11-07 11:52:54--=C2=A0 https://www.unixsheikh.com/includes/files/the= -biggest-myths.pdf Resolving www.unixsheikh.com (www.unixsheikh.co= m )... 78.47.47.61, 2a01:4f8:d0a:4398::2 Connecting to www.unixsheikh.com (www.unixsheik= h.com )|78.47.47.61|:443... connected. HTTP request sent, awaiting response... 200 OK Length: 782272 (764K) [application/pdf] Saving to: =E2=80=98the-biggest-myths.pdf=E2=80=99 the-biggest-myths.pdf=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0 14%[=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D>=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0 ] 109.27K=C2=A0 --.-KB/s=C2=A0=C2=A0=C2=A0 in 0.05= s=C2=A0=C2=A0=C2=A0 2023-11-07 11:52:54 (2.29 MB/s) - Read error at byte 111889/782272 (error:1= 408F119:SSL routines:ssl3_get_record:decryption failed or bad record mac). = Retrying. Both boxes runs the same. From nobody Tue Nov 7 13:26:35 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPpsB4qrLz504BS for ; Tue, 7 Nov 2023 13:26:38 +0000 (UTC) (envelope-from des@freebsd.org) Received: from smtp.freebsd.org (smtp.freebsd.org [IPv6:2610:1c1:1:606c::24b:4]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "smtp.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPpsB4P4tz4Q6f; Tue, 7 Nov 2023 13:26:38 +0000 (UTC) (envelope-from des@freebsd.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1699363598; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=/QiEVTUmOh9BXBnt9A9LFYq4G90Zt3l4QoYlkW78w8Q=; b=Fen5s0dcRTN25WC4MRAmiyN4ZXAXFbfMFFVA7PoQIItcG/Qdq/47AW1wHY/FHt+cf+JUTN 78Y2APosLhF6qRoyYlxDlN/XMzPywbUev8i6efT4GRLthBh60Hrarv7nl7Y0sEUnE+sMTy IWiSKCyIenYuFb9GZNYwfS+AqeZHGPJPS1D3dUzbK/LUvxk2lbsgtbOpT/1CGo1kAk8xKk MJnt+5n9cpRjqntOBgsSiR7QCVamuegucc6qk7OihP2p2TTUjxGL/H1fYtQap6hSNMtijP yILOAHepqQzzplUcegK9DZwsKdS1y063Hq9EtjuhI+h1wpwFY8OphvI9lyPC2A== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1699363598; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=/QiEVTUmOh9BXBnt9A9LFYq4G90Zt3l4QoYlkW78w8Q=; b=DZr15BYaRyaIqmGtfEwvZ9Qha+6PdMHZ+XHaEuv2IdKuv+o5pOW3rJl5PtFDldU1/IWKtr R2isqF5daJM4eNqRWBNMq2xhicSkuvCrmxhiGgXpmNloa809Cf7oEPZe7nfcTSaFgPBuAw mdrgKYugrWth1WmkSWOLjI61exFau3UbezLkeGFdIEVKx1y0g0C45LClyKsyuc+95R3LqS X0tlDtun7QMU1hCcdY18HnQdabCIOJFYMSu/wBHWyhpHZ8SsDkF/hKCD+RH7oqv1H2DBkR Plp6V1dkCT3FJSLFYXP/WBkrX4jyf9DQq6pBI7HFTmexH5Q3k7+ER/6gwKvSWw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1699363598; a=rsa-sha256; cv=none; b=ig7sqZO3unaqGdxlGGkK/OUDBgeb6cEB0z4jDf+PXI0zbQstwSxSC8drnkYK7mcyMbviSm SoutVbplx+rij1+dlna7b4VZ0YQ8Ur3VUzxpUFblWP6H+1kYu3HaUoNF0PNJeAmUVxnD/6 UjzQrjTs3NZK75K1aPyQpjQsSnwuS+iGsmTZ4ppcYikbnXt1A9E3bLo31U66FZDisNxTJi vd782WhrxPh7skgz/eyoodtiTziAI0gjlyy2gKUparNMABYEVqNPMWHAkniRG7+XYDSP6K rhk/pw+0BeRyCDnrH1YeI5alfdIgIlRxSdN6lHTbnmtF//JX6komVQZ+4hiKZQ== Received: from ltc.des.no (2a02-8428-0993-f001-36e8-94ff-feca-9834.rev.sfr.net [IPv6:2a02:8428:993:f001:36e8:94ff:feca:9834]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) (Authenticated sender: des) by smtp.freebsd.org (Postfix) with ESMTPSA id 4SPpsB2k8czCc2; Tue, 7 Nov 2023 13:26:38 +0000 (UTC) (envelope-from des@freebsd.org) Received: by ltc.des.no (Postfix, from userid 1001) id 81626EFBDC; Tue, 7 Nov 2023 14:26:35 +0100 (CET) From: =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav?= To: D'Arcy Cain Cc: freebsd-questions@freebsd.org Subject: Re: Trying to replace a bashism in bourne sh In-Reply-To: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> (D'Arcy Cain's message of "Mon, 6 Nov 2023 13:45:33 -0600") References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> User-Agent: Gnus/5.13 (Gnus v5.13) Date: Tue, 07 Nov 2023 14:26:35 +0100 Message-ID: <86pm0l1ypg.fsf@ltc.des.no> List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable D'Arcy Cain writes: > I need to do this; > > ifconfig_eth3=3D"inet $((16#c0a8c0${me} + 100))/24" > > Problem is that I need to do this at boot time but then it runs as > bourne sh. Does anyone have an equivalent for sh? Just replace '16#' with '0x'. DES --=20 Dag-Erling Sm=C3=B8rgrav - des@FreeBSD.org From nobody Tue Nov 7 14:53:13 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPrnP3NCnz50Lf4 for ; Tue, 7 Nov 2023 14:53:29 +0000 (UTC) (envelope-from darcy@druid.net) Received: from mail.vex.net (mail.vex.net [IPv6:2605:2600:1001::44]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPrnN6TMdz4f01 for ; Tue, 7 Nov 2023 14:53:28 +0000 (UTC) (envelope-from darcy@druid.net) Authentication-Results: mx1.freebsd.org; none Received: from [192.168.215.109] (unknown [98.186.198.48]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) (Authenticated sender: darcy) by mail.vex.net (Postfix) with ESMTPSA id E31663E2C8; Tue, 7 Nov 2023 09:53:17 -0500 (EST) Message-ID: Date: Tue, 7 Nov 2023 08:53:13 -0600 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Trying to replace a bashism in bourne sh To: Arthur Chance , freebsd-questions@freebsd.org References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> Content-Language: en-US From: D'Arcy Cain In-Reply-To: <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:19842, ipnet:2605:2600::/32, country:CA] X-Rspamd-Queue-Id: 4SPrnN6TMdz4f01 On 2023-11-07 02:21, Arthur Chance wrote: > On 06/11/2023 18:45, D'Arcy Cain wrote: >> I need to do this; >> >>   ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" >> >> Problem is that I need to do this at boot time but then it runs as >> bourne sh.  Does anyone have an equivalent for sh? > > I'm not totally familiar with bash but that (16#c0a8c0) is a hexadecimal > number equivalent to an address triplet 192.168.192. I'd guess ${me} is I should have explained more. Basically I have a bunch of servers all on the same network. I have two ethernet (or more) interfaces on each. I am setting up both IPV4 and IPV6 on both the public and the private side. I have a script that gets sourced into a small rc.conf for each server. The idea was to use the same last octet on every interface. In the server rc.conf I have something like this: hostname="smaug.vex.net" me=44 # 68 . /blah/rc.conf # common code I use hex for "me" so that I can create IPV6 addresses. So far so good. Recently, someone else set up iLO on some of the servers. To access iLO she used one of the extra ports on the servers with more than two and put a separate network on it. For some reason she says that she can't use the same last octet for that address as the other interfaces. I don't know enough about iLO yet to understand why so I am just adding the 100 as she did. At least I don't have to worry about IPV6 right now. -- D'Arcy J.M. Cain | Democracy is three wolves http://www.druid.net/darcy/ | and a sheep voting on +1 416 788 2246 (DoD#0082) (eNTP) | what's for dinner. IM: darcy@Vex.Net, VoIP: sip:darcy@druid.net From nobody Tue Nov 7 15:49:26 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPt2F0yxxz50XP8 for ; Tue, 7 Nov 2023 15:49:41 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Received: from mailout.qeng-ho.org (mailout.qeng-ho.org [217.155.128.244]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPt2D66Fwz3LxN for ; Tue, 7 Nov 2023 15:49:40 +0000 (UTC) (envelope-from freebsd@qeng-ho.org) Authentication-Results: mx1.freebsd.org; none Received: from [IPV6:2a02:8010:64c9:1::2] (unknown [IPv6:2a02:8010:64c9:1::2]) by mailout.qeng-ho.org (Postfix) with ESMTP id 389BEF6A63; Tue, 7 Nov 2023 15:49:38 +0000 (GMT) Message-ID: <7343a882-747d-4756-9298-3737880bb435@qeng-ho.org> Date: Tue, 7 Nov 2023 14:49:26 -0100 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Trying to replace a bashism in bourne sh Content-Language: en-GB To: D'Arcy Cain , freebsd-questions@freebsd.org References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> <48b15ea2-3fd5-4994-aace-f0b8d7dc6ede@qeng-ho.org> From: Arthur Chance In-Reply-To: Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:13037, ipnet:217.155.0.0/16, country:GB] X-Rspamd-Queue-Id: 4SPt2D66Fwz3LxN On 07/11/2023 13:53, D'Arcy Cain wrote: > On 2023-11-07 02:21, Arthur Chance wrote: >> On 06/11/2023 18:45, D'Arcy Cain wrote: >>> I need to do this; >>> >>>    ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" >>> >>> Problem is that I need to do this at boot time but then it runs as >>> bourne sh.  Does anyone have an equivalent for sh? >> >> I'm not totally familiar with bash but that (16#c0a8c0) is a hexadecimal >> number equivalent to an address triplet 192.168.192. I'd guess ${me} is > > I should have explained more.  Basically I have a bunch of servers all > on the same network.  I have two ethernet (or more) interfaces on each. > I am setting up both IPV4 and IPV6 on both the public and the private > side.  I have a script that gets sourced into a small rc.conf for each > server.  The idea was to use the same last octet on every interface. > > In the server rc.conf I have something like this: > > hostname="smaug.vex.net" > me=44 # 68 > . /blah/rc.conf # common code > > I use hex for "me" so that I can create IPV6 addresses.  So far so good. > > Recently, someone else set up iLO on some of the servers.  To access iLO > she used one of the extra ports on the servers with more than two and > put a separate network on it.  For some reason she says that she can't > use the same last octet for that address as the other interfaces.  I > don't know enough about iLO yet to understand why so I am just adding > the 100 as she did.  At least I don't have to worry about IPV6 right now. > I see des@ has pointed out that you can use the 0x prefix instead of 16# in sh (which means I've learnt something new today). That looks like the easiest option for you. -- We build our computer systems the way we build our cities; over time, without a plan, on top of ruins. — Ellen Ullman From nobody Tue Nov 7 16:18:06 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPtg73tPlz50dBh for ; Tue, 7 Nov 2023 16:18:11 +0000 (UTC) (envelope-from darcy@druid.net) Received: from mail.vex.net (mail.vex.net [98.158.132.68]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPtg71jkqz3Sc0; Tue, 7 Nov 2023 16:18:11 +0000 (UTC) (envelope-from darcy@druid.net) Authentication-Results: mx1.freebsd.org; none Received: from [192.168.215.109] (unknown [98.186.198.48]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) (Authenticated sender: darcy) by mail.vex.net (Postfix) with ESMTPSA id 2B2963E8A0; Tue, 7 Nov 2023 11:18:08 -0500 (EST) Message-ID: Date: Tue, 7 Nov 2023 10:18:06 -0600 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Trying to replace a bashism in bourne sh Content-Language: en-US To: =?UTF-8?Q?Dag-Erling_Sm=C3=B8rgrav?= Cc: freebsd-questions@freebsd.org References: <8cdcb170-1c54-464b-aa89-c89ca98c86ca@druid.net> <86pm0l1ypg.fsf@ltc.des.no> From: D'Arcy Cain In-Reply-To: <86pm0l1ypg.fsf@ltc.des.no> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:19842, ipnet:98.158.132.0/24, country:CA] X-Rspamd-Queue-Id: 4SPtg71jkqz3Sc0 On 2023-11-07 07:26, Dag-Erling Smørgrav wrote: > D'Arcy Cain writes: >> I need to do this; >> >> ifconfig_eth3="inet $((16#c0a8c0${me} + 100))/24" >> >> Problem is that I need to do this at boot time but then it runs as >> bourne sh. Does anyone have an equivalent for sh? > > Just replace '16#' with '0x'. BINGO! Thanks so much. -- D'Arcy J.M. Cain | Democracy is three wolves http://www.druid.net/darcy/ | and a sheep voting on +1 416 788 2246 (DoD#0082) (eNTP) | what's for dinner. IM: darcy@Vex.Net, VoIP: sip:darcy@druid.net From nobody Tue Nov 7 17:34:06 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPwLp1yHyz4yg9B for ; Tue, 7 Nov 2023 17:34:10 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost1.sentex.ca (smarthost1.sentex.ca [IPv6:2607:f3e0:0:1::12]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smarthost1.sentex.ca", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPwLp0M0Vz3dxF for ; Tue, 7 Nov 2023 17:34:10 +0000 (UTC) (envelope-from mike@sentex.net) Authentication-Results: mx1.freebsd.org; none Received: from pyroxene2a.sentex.ca (pyroxene19.sentex.ca [199.212.134.19]) by smarthost1.sentex.ca (8.17.1/8.16.1) with ESMTPS id 3A7HY7Kb039511 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=FAIL); Tue, 7 Nov 2023 12:34:07 -0500 (EST) (envelope-from mike@sentex.net) Received: from [IPV6:2607:f3e0:0:4:895a:a1ee:64d7:3744] ([IPv6:2607:f3e0:0:4:895a:a1ee:64d7:3744]) by pyroxene2a.sentex.ca (8.17.1/8.15.2) with ESMTPS id 3A7HY612016531 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NO); Tue, 7 Nov 2023 12:34:06 -0500 (EST) (envelope-from mike@sentex.net) Message-ID: <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> Date: Tue, 7 Nov 2023 12:34:06 -0500 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Openssl errors on FreeBSD Content-Language: en-US To: iio7@tutanota.com, Freebsd Questions References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> From: mike tancsa Autocrypt: addr=mike@sentex.net; keydata= xsBNBFywzOMBCACoNFpwi5MeyEREiCeHtbm6pZJI/HnO+wXdCAWtZkS49weOoVyUj5BEXRZP xflV2ib2hflX4nXqhenaNiia4iaZ9ft3I1ebd7GEbGnsWCvAnob5MvDZyStDAuRxPJK1ya/s +6rOvr+eQiXYNVvfBhrCfrtR/esSkitBGxhUkBjOti8QwzD71JVF5YaOjBAs7jZUKyLGj0kW yDg4jUndudWU7G2yc9GwpHJ9aRSUN8e/mWdIogK0v+QBHfv/dsI6zVB7YuxCC9Fx8WPwfhDH VZC4kdYCQWKXrm7yb4TiVdBh5kgvlO9q3js1yYdfR1x8mjK2bH2RSv4bV3zkNmsDCIxjABEB AAHNHW1pa2UgdGFuY3NhIDxtaWtlQHNlbnRleC5uZXQ+wsCOBBMBCAA4FiEEmuvCXT0aY6hs 4SbWeVOEFl5WrMgFAl+pQfkCGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeVOEFl5W rMiN6ggAk3H5vk8QnbvGbb4sinxZt/wDetgk0AOR9NRmtTnPaW+sIJEfGBOz47Xih+f7uWJS j+uvc9Ewn2Z7n8z3ZHJlLAByLVLtcNXGoRIGJ27tevfOaNqgJHBPbFOcXCBBFTx4MYMM4iAZ cDT5vsBTSaM36JZFtHZBKkuFEItbA/N8ZQSHKdTYMIA7A3OCLGbJBqloQ8SlW4MkTzKX4u7R yefAYQ0h20x9IqC5Ju8IsYRFacVZconT16KS81IBceO42vXTN0VexbVF2rZIx3v/NT75r6Vw 0FlXVB1lXOHKydRA2NeleS4NEG2vWqy/9Boj0itMfNDlOhkrA/0DcCurMpnpbM7ATQRcsMzk AQgA1Dpo/xWS66MaOJLwA28sKNMwkEk1Yjs+okOXDOu1F+0qvgE8sVmrOOPvvWr4axtKRSG1 t2QUiZ/ZkW/x/+t0nrM39EANV1VncuQZ1ceIiwTJFqGZQ8kb0+BNkwuNVFHRgXm1qzAJweEt RdsCMohB+H7BL5LGCVG5JaU0lqFU9pFP40HxEbyzxjsZgSE8LwkI6wcu0BLv6K6cLm0EiHPO l5G8kgRi38PS7/6s3R8QDsEtbGsYy6O82k3zSLIjuDBwA9GRaeigGppTxzAHVjf5o9KKu4O7 gC2KKVHPegbXS+GK7DU0fjzX57H5bZ6komE5eY4p3oWT/CwVPSGfPs8jOwARAQABwsB2BBgB CAAgFiEEmuvCXT0aY6hs4SbWeVOEFl5WrMgFAl+pQfkCGwwACgkQeVOEFl5WrMiVqwf9GwU8 c6cylknZX8QwlsVudTC8xr/L17JA84wf03k3d4wxP7bqy5AYy7jboZMbgWXngAE/HPQU95NM aukysSnknzoIpC96XZJ0okLBXVS6Y0ylZQ+HrbIhMpuQPoDweoF5F9wKrsHRoDaUK1VR706X rwm4HUzh7Jk+auuMYfuCh0FVlFBEuiJWMLhg/5WCmcRfiuB6F59ZcUQrwLEZeNhF2XJV4KwB Tlg7HCWO/sy1foE5noaMyACjAtAQE9p5kGYaj+DuRhPdWUTsHNuqrhikzIZd2rrcMid+ktb0 NvtvswzMO059z1YGMtGSqQ4srCArju+XHIdTFdiIYbd7+jeehg== In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Scanned-By: MIMEDefang 2.84 on 64.7.153.18 X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:11647, ipnet:2607:f3e0::/32, country:CA] X-Rspamd-Queue-Id: 4SPwLp0M0Vz3dxF On 11/7/2023 5:54 AM, iio7@tutanota.com wrote: > >> What does ldd curl show on your problem boxes ? And what versions of curl and openssl do you have installed ? i.e. Yes, but what about ldd curl ? What does it show And I am guessing you have nothing in /etc/libmap*     ---Mike From nobody Tue Nov 7 18:36:07 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPxkL5wdrz4yvmf for ; Tue, 7 Nov 2023 18:36:10 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPxkK5cCyz4LN9 for ; Tue, 7 Nov 2023 18:36:09 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=F2HHWUyJ; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id A9F89FBFAA9 for ; Tue, 7 Nov 2023 18:36:07 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699382167; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=MYgKCMqxiPeb/tctPdXhDsLup0p3jTF4vyDvsLihf6k=; b=F2HHWUyJozt/JsD4hvZyps9ZshQR44SEvMH90wSlVrF4lIX2qpP8xXiNdmi+tHtu PumgQPQEVVpgCFSffLvMgxTuz1UZnhpy2YsCFxbippS/ZjE6H7L7xQrJ5rMJ0x9N8OH hyaoVN58jgXxoOd+19L8wEUf/frWB7FqqZdh4vCrwGbK09mrHNqhF6PEdSD9J7LfLBw IUHt8qy3xpy9z3bFGPSvABqN4stWJf1RC2tVwHKHZ8JeDe3egBzOF+C8vhNd5nlbeV3 5swKjTfDnC4lt7fYNeDmkmu8OOcoYtCbcmvIKfwdBARXUpgs4wjCybIW8aCC0Yknd8b V3dh6ynCSA== Date: Tue, 7 Nov 2023 19:36:07 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.30 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SPxkK5cCyz4LN9 X-Spamd-Bar: ---- > Yes, but what about > > ldd curl > > ? What does it show > Sorry, forgot ldd. $ ldd /usr/local/bin/curl /usr/local/bin/curl: =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcurl.so.4 =3D> /usr/local/lib= /libcurl.so.4 (0x1fc15c2cd000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libz.so.6 =3D> /lib/libz.so.6 (0= x1fc15d337000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libkrb5.so.11 =3D> /usr/lib/libk= rb5.so.11 (0x1fc15ddbf000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libgssapi.so.10 =3D> /usr/lib/li= bgssapi.so.10 (0x1fc15ec46000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libgssapi_krb5.so.10 =3D> /usr/l= ib/libgssapi_krb5.so.10 (0x1fc15fc91000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libthr.so.3 =3D> /lib/libthr.so.= 3 (0x1fc15f095000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libc.so.7 =3D> /lib/libc.so.7 (0= x1fc15fed8000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libnghttp2.so.14 =3D> /usr/local= /lib/libnghttp2.so.14 (0x1fc160f02000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libssh2.so.1 =3D> /usr/local/lib= /libssh2.so.1 (0x1fc1624ba000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libpsl.so.5 =3D> /usr/local/lib/= libpsl.so.5 (0x1fc161dcc000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libssl.so.111 =3D> /usr/lib/libs= sl.so.111 (0x1fc163cab000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libheimntlm.so.11 =3D> /usr/lib/= libheimntlm.so.11 (0x1fc162630000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libhx509.so.11 =3D> /usr/lib/lib= hx509.so.11 (0x1fc162acc000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcom_err.so.5 =3D> /usr/lib/li= bcom_err.so.5 (0x1fc162f7d000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcrypto.so.111 =3D> /lib/libcr= ypto.so.111 (0x1fc165235000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libasn1.so.11 =3D> /usr/lib/liba= sn1.so.11 (0x1fc163e69000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libwind.so.11 =3D> /usr/lib/libw= ind.so.11 (0x1fc1649eb000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libheimbase.so.11 =3D> /usr/lib/= libheimbase.so.11 (0x1fc166551000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libroken.so.11 =3D> /usr/lib/lib= roken.so.11 (0x1fc16573f000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcrypt.so.5 =3D> /lib/libcrypt= .so.5 (0x1fc167452000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libprivateheimipcc.so.11 =3D> /u= sr/lib/libprivateheimipcc.so.11 (0x1fc16877f000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libidn2.so.0 =3D> /usr/local/lib= /libidn2.so.0 (0x1fc1683b6000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libunistring.so.5 =3D> /usr/loca= l/lib/libunistring.so.5 (0x1fc1695eb000) =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 [vdso] (0x7ffffffff000) > And I am guessing you have nothing in /etc/libmap* > $ ls /etc/libmap* /etc/libmap.conf $ cat /etc/libmap.conf=C2=A0 # $FreeBSD$ includedir /usr/local/etc/libmap.d $ ls /usr/local/etc/libmap.d ls: /usr/local/etc/libmap.d: No such file or directory From nobody Tue Nov 7 18:51:38 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPy4V1cxXz4yyhl for ; Tue, 7 Nov 2023 18:51:54 +0000 (UTC) (envelope-from pprocacci@gmail.com) Received: from mail-ed1-x52d.google.com (mail-ed1-x52d.google.com [IPv6:2a00:1450:4864:20::52d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPy4T3BzKz4P86 for ; Tue, 7 Nov 2023 18:51:53 +0000 (UTC) (envelope-from pprocacci@gmail.com) Authentication-Results: mx1.freebsd.org; none Received: by mail-ed1-x52d.google.com with SMTP id 4fb4d7f45d1cf-53e08b60febso10304746a12.1 for ; Tue, 07 Nov 2023 10:51:53 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699383110; x=1699987910; darn=freebsd.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=TkcehnqQXtd+l8yzmclapxXqxUZuInqQZzKjyDrIS+Y=; b=c8obOfzlKr3L0JTsTwO3AeP+qFw2x/YG2WvZhbDjHKLH/fRQJl/6ZQdCMF8hxmhjlN vCTfqBKZdWn8Lh7a7cv5HAVZ+f/36XBuqlVoHkIvPOTxT9FnSnnuVghgvygYUVyJMVgV SiHMct+1m9iXdTNrbzszdRQfTNiCDT6un8mdMRzA0ScrGGDDl4zel87UAwjxZxAqBqpH EtbzpFXl/mS5iCvSbcTBPcV21hJ1B2WHPIxwfzdGGDKW6Bo1MWd/FfzvJOz8NYer9x6Z Nou/fuK02ysKaopysZzqauI2coyh8N0OdGUZFairTdApDrpwsd3XYmYQ0IMRsTgyIVAz EA/A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699383110; x=1699987910; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=TkcehnqQXtd+l8yzmclapxXqxUZuInqQZzKjyDrIS+Y=; b=vxtOlE4ku4tldzps0ecOKazUvlRQILKxyZArlLoq0ZBiqtyzqM7ibdxuZzub3oSIEr 3yB4av+n3h86vL8/IFTSvDBk0+T4AZ2x8V9BiYz8fiGy7NSalc7BrU6raZQzCweVzug9 1yI0gZuj1NZy6wXIGnCSPwhcwkmWwHIJElV+b0gMcjSVsHZiKd78ha9ai5Kfspuv+2cT KxMhYvp94LH+njE8dB16PpZenuLeawboLfzvN+eiKMY6/oqTV5JbU/X7dDChLBTMjy1Q L4/n6zZqHy/LSPRaO4BuGeM5o2kdFF5Ig+uDbzBy1Hj8SFQzZcPm9pbviWVzNABPGnnW K0Ng== X-Gm-Message-State: AOJu0YxL8PHDPSEe5eZhSKqV+JpjRfLTBHGVAIXCRSS6rr1VTXvPMzuF wRGiwQxMT5iHbYs1tYF0bVA+Ux+blJarEjcHrA== X-Google-Smtp-Source: AGHT+IEXm1kcNEU5Mislvn252+CqFGyHnJvjvcmZ1Utm9i4MYWPHg4uyGfMgVpjO6k4hC1FDWZ4/uaQ+ScOTCGZxvk4= X-Received: by 2002:a17:906:6d0c:b0:9df:254d:3e45 with SMTP id m12-20020a1709066d0c00b009df254d3e45mr6248621ejr.24.1699383110170; Tue, 07 Nov 2023 10:51:50 -0800 (PST) List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> In-Reply-To: From: Paul Procacci Date: Tue, 7 Nov 2023 13:51:38 -0500 Message-ID: Subject: Re: Openssl errors on FreeBSD To: iio7@tutanota.com Cc: Freebsd Questions Content-Type: multipart/alternative; boundary="0000000000009e825f0609947674" X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:15169, ipnet:2a00:1450::/32, country:US] X-Rspamd-Queue-Id: 4SPy4T3BzKz4P86 --0000000000009e825f0609947674 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Tue, Nov 7, 2023 at 1:36=E2=80=AFPM wrote: > > > > Yes, but what about > > > > ldd curl > > > > ? What does it show > > > Sorry, forgot ldd. > > $ ldd /usr/local/bin/curl > /usr/local/bin/curl: > libcurl.so.4 =3D> /usr/local/lib/libcurl.so.4 (0x1fc15c2cd000) > libz.so.6 =3D> /lib/libz.so.6 (0x1fc15d337000) > libkrb5.so.11 =3D> /usr/lib/libkrb5.so.11 (0x1fc15ddbf000) > libgssapi.so.10 =3D> /usr/lib/libgssapi.so.10 (0x1fc15ec46000) > libgssapi_krb5.so.10 =3D> /usr/lib/libgssapi_krb5.so.10 > (0x1fc15fc91000) > libthr.so.3 =3D> /lib/libthr.so.3 (0x1fc15f095000) > libc.so.7 =3D> /lib/libc.so.7 (0x1fc15fed8000) > libnghttp2.so.14 =3D> /usr/local/lib/libnghttp2.so.14 > (0x1fc160f02000) > libssh2.so.1 =3D> /usr/local/lib/libssh2.so.1 (0x1fc1624ba000) > libpsl.so.5 =3D> /usr/local/lib/libpsl.so.5 (0x1fc161dcc000) > libssl.so.111 =3D> /usr/lib/libssl.so.111 (0x1fc163cab000) > libheimntlm.so.11 =3D> /usr/lib/libheimntlm.so.11 (0x1fc162630000= ) > libhx509.so.11 =3D> /usr/lib/libhx509.so.11 (0x1fc162acc000) > libcom_err.so.5 =3D> /usr/lib/libcom_err.so.5 (0x1fc162f7d000) > libcrypto.so.111 =3D> /lib/libcrypto.so.111 (0x1fc165235000) > libasn1.so.11 =3D> /usr/lib/libasn1.so.11 (0x1fc163e69000) > libwind.so.11 =3D> /usr/lib/libwind.so.11 (0x1fc1649eb000) > libheimbase.so.11 =3D> /usr/lib/libheimbase.so.11 (0x1fc166551000= ) > libroken.so.11 =3D> /usr/lib/libroken.so.11 (0x1fc16573f000) > libcrypt.so.5 =3D> /lib/libcrypt.so.5 (0x1fc167452000) > libprivateheimipcc.so.11 =3D> /usr/lib/libprivateheimipcc.so.11 > (0x1fc16877f000) > libidn2.so.0 =3D> /usr/local/lib/libidn2.so.0 (0x1fc1683b6000) > libunistring.so.5 =3D> /usr/local/lib/libunistring.so.5 > (0x1fc1695eb000) > [vdso] (0x7ffffffff000) > > > And I am guessing you have nothing in /etc/libmap* > > > $ ls /etc/libmap* > /etc/libmap.conf > > $ cat /etc/libmap.conf > # $FreeBSD$ > includedir /usr/local/etc/libmap.d > > $ ls /usr/local/etc/libmap.d > ls: /usr/local/etc/libmap.d: No such file or directory > > Is the time correct on your machine? The problem with this specific error is that it can be caused by anything from the source machine to the destination machine. No one is going to have a silver bullet. It can be anything from a bad switch port, to offloading features of the nic, to a TLS Proxy is sorts sitting in between machines, etc. ~Paul --=20 __________________ :(){ :|:& };: --0000000000009e825f0609947674 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable


On Tue, Nov 7, 2023 at 1:36=E2= =80=AFPM <iio7@tutanota.com>= wrote:


> Yes, but what about
>
> ldd curl
>
> ? What does it show
>
Sorry, forgot ldd.

$ ldd /usr/local/bin/curl
/usr/local/bin/curl:
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcurl.so.4 =3D> /usr/local/= lib/libcurl.so.4 (0x1fc15c2cd000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libz.so.6 =3D> /lib/libz.so.6= (0x1fc15d337000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libkrb5.so.11 =3D> /usr/lib/l= ibkrb5.so.11 (0x1fc15ddbf000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libgssapi.so.10 =3D> /usr/lib= /libgssapi.so.10 (0x1fc15ec46000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libgssapi_krb5.so.10 =3D> /us= r/lib/libgssapi_krb5.so.10 (0x1fc15fc91000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libthr.so.3 =3D> /lib/libthr.= so.3 (0x1fc15f095000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libc.so.7 =3D> /lib/libc.so.7= (0x1fc15fed8000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libnghttp2.so.14 =3D> /usr/lo= cal/lib/libnghttp2.so.14 (0x1fc160f02000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libssh2.so.1 =3D> /usr/local/= lib/libssh2.so.1 (0x1fc1624ba000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libpsl.so.5 =3D> /usr/local/l= ib/libpsl.so.5 (0x1fc161dcc000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libssl.so.111 =3D> /usr/lib/l= ibssl.so.111 (0x1fc163cab000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libheimntlm.so.11 =3D> /usr/l= ib/libheimntlm.so.11 (0x1fc162630000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libhx509.so.11 =3D> /usr/lib/= libhx509.so.11 (0x1fc162acc000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcom_err.so.5 =3D> /usr/lib= /libcom_err.so.5 (0x1fc162f7d000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcrypto.so.111 =3D> /lib/li= bcrypto.so.111 (0x1fc165235000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libasn1.so.11 =3D> /usr/lib/l= ibasn1.so.11 (0x1fc163e69000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libwind.so.11 =3D> /usr/lib/l= ibwind.so.11 (0x1fc1649eb000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libheimbase.so.11 =3D> /usr/l= ib/libheimbase.so.11 (0x1fc166551000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libroken.so.11 =3D> /usr/lib/= libroken.so.11 (0x1fc16573f000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libcrypt.so.5 =3D> /lib/libcr= ypt.so.5 (0x1fc167452000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libprivateheimipcc.so.11 =3D>= /usr/lib/libprivateheimipcc.so.11 (0x1fc16877f000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libidn2.so.0 =3D> /usr/local/= lib/libidn2.so.0 (0x1fc1683b6000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 libunistring.so.5 =3D> /usr/l= ocal/lib/libunistring.so.5 (0x1fc1695eb000)
=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 [vdso] (0x7ffffffff000)

> And I am guessing you have nothing in /etc/libmap*
>
$ ls /etc/libmap*
/etc/libmap.conf

$ cat /etc/libmap.conf=C2=A0
# $FreeBSD$
includedir /usr/local/etc/libmap.d

$ ls /usr/local/etc/libmap.d
ls: /usr/local/etc/libmap.d: No such file or directory


Is the time correct on your= machine?

The problem with this specific error is = that it can be caused by anything from the source machine to the destinatio= n machine.
No one is going to have a silver bullet.=C2=A0 It can = be anything from a bad switch port, to offloading features of the nic, to a= TLS Proxy is sorts sitting in between machines, etc.

~Pa= ul
--
__________________

:(){ :|:&am= p; };:
--0000000000009e825f0609947674-- From nobody Tue Nov 7 19:34:53 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SPz2B0Jkrz5084H for ; Tue, 7 Nov 2023 19:34:58 +0000 (UTC) (envelope-from jguojun@gmail.com) Received: from mail-yw1-x1132.google.com (mail-yw1-x1132.google.com [IPv6:2607:f8b0:4864:20::1132]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SPz2927Q2z4VFh for ; Tue, 7 Nov 2023 19:34:57 +0000 (UTC) (envelope-from jguojun@gmail.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=gmail.com header.s=20230601 header.b=ZBziKz8s; spf=pass (mx1.freebsd.org: domain of jguojun@gmail.com designates 2607:f8b0:4864:20::1132 as permitted sender) smtp.mailfrom=jguojun@gmail.com; dmarc=pass (policy=none) header.from=gmail.com Received: by mail-yw1-x1132.google.com with SMTP id 00721157ae682-59b5484fbe6so71613987b3.1 for ; Tue, 07 Nov 2023 11:34:57 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699385696; x=1699990496; darn=freebsd.org; h=content-transfer-encoding:in-reply-to:from:content-language :references:to:subject:user-agent:mime-version:date:message-id:from :to:cc:subject:date:message-id:reply-to; bh=rZVsz0KhpxyehA73fn2tpFTs1uKYkTOBON/SUUiVzfA=; b=ZBziKz8s3O/iippiGj69ycPqaP4TuWLWV8t8bOX9mZ5oCiiuS19FZ3bnmPtApf8vs3 2RcTT/H5k7LRKqrfxH5PRGXtKrX/3XMS5r3dtNxBji7BqZQfj1/8QEieU0Dnc8o+u5yi WICgzL+M0vThdaXTlsRt0OySjKYVarEJ1SI8C5ju+BU9tNwUx8za9tpYxuVzb1gfb7JP JtqAd210VXOctT0svhp8dpjrYyfsCj85MVnoTPlXBn4YqzDvzU/G71OkgkP/dv+e1Jqk OKT20RzZkoI7yRZ34QU6y/CYyfcxhTqJUIU133UGRVNxtg4dHpQiI0Q8bbbTCt0cVHAE 8i6w== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699385696; x=1699990496; h=content-transfer-encoding:in-reply-to:from:content-language :references:to:subject:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=rZVsz0KhpxyehA73fn2tpFTs1uKYkTOBON/SUUiVzfA=; b=xKllMUmX3ax9knBsa9e/2tygodpBa6QyhEx/KX2g9EFXyS9lJxJh2kaO2gyTWSrVU0 zhMkBXjoO4cpjmG65TIAYmb73L+V7xOclyfT23g/w8SFCxt3Ulghk/nE5QxDsgK+9emT LX/3mJ3BONXHNNfti9HDpTrBxF8u4ojP/2M0T+uX6vCyH2SuM4HbMY/XTDW2kkZOEGxD KqQvKag6jDRmm+AWpog9l2CPaZMOwDuUkL/2EDZ7EfHjYVBdoFaK0Im4T0VwF/NiFCPT PDozBzoZLjrj+7sUDVIOTUmryaAafoHa3y5matrfqEA5vWNjgM+0bDXFFj4wehvfyktl D0GA== X-Gm-Message-State: AOJu0YyQUA8jzLZiIVE0cIFsbx5V6Ipm9bL8TXUXgBE/N3j+Ev7S82ze /Er70s/4nOheRX0ijdppiiOUfLUapvfe X-Google-Smtp-Source: AGHT+IHNyo2owrJKVerP+Kn5jes0XyJphcSOGoroaznpNxkVQLpgxAiqiDpZvTAE+4D1b/VZqNgMgA== X-Received: by 2002:a81:77c6:0:b0:5ae:c35a:807a with SMTP id s189-20020a8177c6000000b005aec35a807amr14297885ywc.48.1699385695755; Tue, 07 Nov 2023 11:34:55 -0800 (PST) Received: from [192.168.1.82] (76-218-103-166.lightspeed.sntcca.sbcglobal.net. [76.218.103.166]) by smtp.gmail.com with ESMTPSA id d137-20020a814f8f000000b005a206896d62sm5976307ywb.111.2023.11.07.11.34.54 for (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 07 Nov 2023 11:34:55 -0800 (PST) Message-ID: Date: Tue, 7 Nov 2023 11:34:53 -0800 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:102.0) Gecko/20100101 Thunderbird/102.10.0 Subject: Re: Openssl errors on FreeBSD To: questions@freebsd.org References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> Content-Language: en-US From: "Jin Guojun[VFF]" In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Result: default: False [-3.99 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-0.997]; NEURAL_HAM_SHORT(-1.00)[-0.996]; DMARC_POLICY_ALLOW(-0.50)[gmail.com,none]; R_SPF_ALLOW(-0.20)[+ip6:2607:f8b0:4000::/36]; R_DKIM_ALLOW(-0.20)[gmail.com:s=20230601]; MIME_GOOD(-0.10)[text/plain]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; PREVIOUSLY_DELIVERED(0.00)[questions@freebsd.org]; RCVD_IN_DNSWL_NONE(0.00)[2607:f8b0:4864:20::1132:from]; ARC_NA(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; MLMMJ_DEST(0.00)[questions@freebsd.org]; DKIM_TRACE(0.00)[gmail.com:+]; TO_DN_NONE(0.00)[]; FREEMAIL_FROM(0.00)[gmail.com]; DWL_DNSWL_NONE(0.00)[gmail.com:dkim]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:15169, ipnet:2607:f8b0::/32, country:US]; FREEMAIL_ENVFROM(0.00)[gmail.com]; RCVD_COUNT_TWO(0.00)[2] X-Rspamd-Queue-Id: 4SPz2927Q2z4VFh X-Spamd-Bar: --- On 11/7/23 10:36, iio7@tutanota.com wrote: > >> Yes, but what about >> >> ldd curl >> >> ? What does it show >> > Sorry, forgot ldd. > > $ ldd /usr/local/bin/curl > /usr/local/bin/curl: >         libcurl.so.4 => /usr/local/lib/libcurl.so.4 (0x1fc15c2cd000) >         libz.so.6 => /lib/libz.so.6 (0x1fc15d337000) >         libkrb5.so.11 => /usr/lib/libkrb5.so.11 (0x1fc15ddbf000) >         libgssapi.so.10 => /usr/lib/libgssapi.so.10 (0x1fc15ec46000) >         libgssapi_krb5.so.10 => /usr/lib/libgssapi_krb5.so.10 (0x1fc15fc91000) >         libthr.so.3 => /lib/libthr.so.3 (0x1fc15f095000) >         libc.so.7 => /lib/libc.so.7 (0x1fc15fed8000) >         libnghttp2.so.14 => /usr/local/lib/libnghttp2.so.14 (0x1fc160f02000) >         libssh2.so.1 => /usr/local/lib/libssh2.so.1 (0x1fc1624ba000) >         libpsl.so.5 => /usr/local/lib/libpsl.so.5 (0x1fc161dcc000) >         libssl.so.111 => /usr/lib/libssl.so.111 (0x1fc163cab000) >         libheimntlm.so.11 => /usr/lib/libheimntlm.so.11 (0x1fc162630000) >         libhx509.so.11 => /usr/lib/libhx509.so.11 (0x1fc162acc000) >         libcom_err.so.5 => /usr/lib/libcom_err.so.5 (0x1fc162f7d000) >         libcrypto.so.111 => /lib/libcrypto.so.111 (0x1fc165235000) >         libasn1.so.11 => /usr/lib/libasn1.so.11 (0x1fc163e69000) >         libwind.so.11 => /usr/lib/libwind.so.11 (0x1fc1649eb000) >         libheimbase.so.11 => /usr/lib/libheimbase.so.11 (0x1fc166551000) >         libroken.so.11 => /usr/lib/libroken.so.11 (0x1fc16573f000) >         libcrypt.so.5 => /lib/libcrypt.so.5 (0x1fc167452000) >         libprivateheimipcc.so.11 => /usr/lib/libprivateheimipcc.so.11 (0x1fc16877f000) >         libidn2.so.0 => /usr/local/lib/libidn2.so.0 (0x1fc1683b6000) >         libunistring.so.5 => /usr/local/lib/libunistring.so.5 (0x1fc1695eb000) >         [vdso] (0x7ffffffff000) > >> And I am guessing you have nothing in /etc/libmap* >> > $ ls /etc/libmap* > /etc/libmap.conf > > $ cat /etc/libmap.conf > # $FreeBSD$ > includedir /usr/local/etc/libmap.d > > $ ls /usr/local/etc/libmap.d > ls: /usr/local/etc/libmap.d: No such file or directory > I do not see this problem on my 13.2 box. Maybe the time to check the file size and checksum: # md5  /usr/lib/libssl.so.111 /usr/local/lib/libssh2.so.1 /usr/local/lib/libpsl.so.5 /lib/libcrypt.so.5 MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 MD5 (/usr/local/lib/libssh2.so.1) = 97352dbd17601ae92f1be57a5c2d4117 MD5 (/usr/local/lib/libpsl.so.5) = 03e94fb7b12212abce81783304706c4d MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 # ls -l  /usr/lib/libssl.so.111 /usr/local/lib/libssh2.so.1 /usr/local/lib/libpsl.so.5  /lib/libcrypt.so.5 -r--r--r--  1 root  wheel   52096 Apr  6  2023 /lib/libcrypt.so.5 -r--r--r--  1 root  wheel  611232 Apr  6  2023 /usr/lib/libssl.so.111 lrwxr-xr-x  1 root  wheel      15 Apr  1  2023 /usr/local/lib/libpsl.so.5@ -> libpsl.so.5.3.4 lrwxr-xr-x  1 root  wheel      16 Feb 17  2023 /usr/local/lib/libssh2.so.1@ -> libssh2.so.1.0.1 # ls -lL  /usr/local/lib/libssh2.so.1 /usr/local/lib/libpsl.so.5 -rwxr-xr-x  1 root  wheel   72184 Apr  1  2023 /usr/local/lib/libpsl.so.5* -rwxr-xr-x  1 root  wheel  245016 Feb 17  2023 /usr/local/lib/libssh2.so.1* From nobody Tue Nov 7 21:45:02 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQ1wL3PdJz50Xw9 for ; Tue, 7 Nov 2023 21:45:06 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQ1wJ0Tgtz4mtv for ; Tue, 7 Nov 2023 21:45:04 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=l+cd0V3+; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 23C31FBF9E9 for ; Tue, 7 Nov 2023 21:45:02 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699393502; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=CuTdOKD/ZcAJViNDII+Q0WpzQHa45KXJO/fNXpmJpo4=; b=l+cd0V3+xh5irCmLbVj+SZlzi1Tb3ov8xX748sakvmkKOaEnWxvJLqHSqRBxIBVy E+kuFUuXG3/Ct/RjVVeI0Q6C0ovBl9eEl/HN5iVKPsnHVPcIVSvOPl+qMsp0wVl+Gou H9Qfb1oqOBYblS4CwP8W4BeMJlVmniIfFbVV7Chnz7JdQuRztAWOnLwMa9NTknVRXKR LXpZ79DWrOANtPYk3EMjQiUiKw3LdMfSdsI95w91TEzPk8q2zXpfifPuoXx98ASYuT2 OvKyhIRyrh+kUcOj0IbU3MykGKN+jQaK7AgKeAXY7rdcB9v/VLA1lXfCUeKrT3RANeR KquKodalgg== Date: Tue, 7 Nov 2023 22:45:02 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.30 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SQ1wJ0Tgtz4mtv X-Spamd-Bar: ---- I have booted up two other FreeBSD machines on the same network, attached t= o the same switch as the other two boxes. Same version of FreeBSD and OpenS= SL, and they work fine. On the two boxes that works, I get the following identical checksums for bo= th: MD5 (/usr/lib/libssl.so.111) =3D c0acd4514415e93aeab75b7f4c557215 MD5 (/usr/local/lib/libssh2.so.1) =3D 8db4b65c0e970a9b770901417dadd802 MD5 (/usr/local/lib/libpsl.so.5) =3D 43354da8ffb91bee9e9b085c7220d00f MD5 (/lib/libcrypt.so.5) =3D cb4a7958dbaba1291c11384dbc36cd06 On the first failing box: MD5 (/usr/lib/libssl.so.111) =3D c0acd4514415e93aeab75b7f4c557215 MD5 (/usr/local/lib/libssh2.so.1) =3D de126372e3ca38ddc3a9aadf55d64d6d MD5 (/usr/local/lib/libpsl.so.5) =3D ed11fe03ea248b4e82202c5dabbfb77a MD5 (/lib/libcrypt.so.5) =3D cb4a7958dbaba1291c11384dbc36cd06 On the second failing box: MD5 (/usr/lib/libssl.so.111) =3D c0acd4514415e93aeab75b7f4c557215 MD5 (/usr/local/lib/libssh2.so.1) =3D de126372e3ca38ddc3a9aadf55d64d6d MD5 (/usr/local/lib/libpsl.so.5) =3D ed11fe03ea248b4e82202c5dabbfb77a MD5 (/lib/libcrypt.so.5) =3D cb4a7958dbaba1291c11384dbc36cd06 On one of the working boxes: -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 52096 Apr=C2=A0 7=C2=A0 202= 3 /lib/libcrypt.so.5 -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0 611232 Apr=C2=A0 7=C2=A0 2023 /us= r/lib/libssl.so.111 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 68952 Oct=C2=A0 5 03:16 /us= r/local/lib/libpsl.so.5 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0 262944 Aug=C2=A0 6 03:08 /usr/loc= al/lib/libssh2.so.1 On the first failing box: -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 52096 Apr 11=C2=A0 2023 /li= b/libcrypt.so.5 -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0 611232 Apr 11=C2=A0 2023 /usr/lib= /libssl.so.111 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 72168 Apr 15=C2=A0 2023 /us= r/local/lib/libpsl.so.5 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0 263296 Jun=C2=A0 1 03:15 /usr/loc= al/lib/libssh2.so.1 On the second failing box: -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 52096 Apr 11=C2=A0 2023 /li= b/libcrypt.so.5 -r--r--r--=C2=A0 1 root=C2=A0 wheel=C2=A0 611232 Apr 11=C2=A0 2023 /usr/lib= /libssl.so.111 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0=C2=A0 72168 Apr 15=C2=A0 2023 /us= r/local/lib/libpsl.so.5 -rwxr-xr-x=C2=A0 1 root=C2=A0 wheel=C2=A0 263296 Jun=C2=A0 1 03:15 /usr/loc= al/lib/libssh2.so.1 It should be notet that all four boxes only sits on LAN and only I have acc= ess. Whatever changes has occurred must be during some upgrade or something= . From nobody Wed Nov 8 00:36:15 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQ5jv4NkXz4ytBg for ; Wed, 8 Nov 2023 00:36:19 +0000 (UTC) (envelope-from jguojun@gmail.com) Received: from mail-yw1-x1131.google.com (mail-yw1-x1131.google.com [IPv6:2607:f8b0:4864:20::1131]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQ5jt4MRFz3Nfs for ; Wed, 8 Nov 2023 00:36:18 +0000 (UTC) (envelope-from jguojun@gmail.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=gmail.com header.s=20230601 header.b="D+DW/4AQ"; spf=pass (mx1.freebsd.org: domain of jguojun@gmail.com designates 2607:f8b0:4864:20::1131 as permitted sender) smtp.mailfrom=jguojun@gmail.com; dmarc=pass (policy=none) header.from=gmail.com Received: by mail-yw1-x1131.google.com with SMTP id 00721157ae682-5afbdbf3a19so74665507b3.2 for ; Tue, 07 Nov 2023 16:36:18 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699403777; x=1700008577; darn=freebsd.org; h=content-transfer-encoding:in-reply-to:from:content-language :references:to:subject:user-agent:mime-version:date:message-id:from :to:cc:subject:date:message-id:reply-to; bh=p74QH3TCPJczxZF0mMG/lb0weAZebSb8wdaxcokPj2Y=; b=D+DW/4AQ8K1RiNnEhUBtI56MnRO8Nksk8of/yZfjEb9MVkmofwRew/VHdPM/sNl/5j 5JNPHoO5h0wG1JgmNRrMYok3saCBtGGoWCT7kFtuG8eBkdBwsuQzHnyxty3ADfSCuUQC RaqoJEyjPBESnrXb1y8B0crKXNghNFmqeU8ijv7+6rDz+emY/YGHjoNuDiOnALXFy74V aIOt4kjt3ajROl/zvgQnJPhyN5qaAlMNXTLlB1T2Wo4IZeNq3UCiGK2/1Qw95oMJQnbG OGNWpmeXQ/YPcngj5NtydRWZBwGC11hxX3kY4T2jTdLGsyeDeAR8uQ0DH+ycGDiIUKP/ 6qmg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699403777; x=1700008577; h=content-transfer-encoding:in-reply-to:from:content-language :references:to:subject:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=p74QH3TCPJczxZF0mMG/lb0weAZebSb8wdaxcokPj2Y=; b=cR+nEl+O2vITWyI06R6rCFd7+mQ++WmisXtz8KQNmrOcbhse14uxLGRTwsBYZQUSH6 PhzPfYjqUYAbC3cVfozegv0vwPwQZcSFA3+ZwqXnQ13og/mQqq0JzDmpzVTozpJmv2+4 VLBtG3GfV7mmcSZk5/VO+3uvLQ2Vbt98WTfDK7L4AU2N4o7qFqSfJ7jng4+PXT52Pd1X tnilFWGqFzh6yWBnuJjdqCW4en5Pfe7ve3R+SKDp4dqH9eqn2kGIvmphM5u0a5JQ1BOk qkcsauTvFRXblol/SIaTzL9J/vl2p+sppKoqURxATTNeOQUyzTuloTFQK3D4+581fpJQ 438g== X-Gm-Message-State: AOJu0YxNf+QowmekDY9OszPH6Nkax6R99k67LGNk1IS2iA0mm4MO04Sn 6HaHNOB1R3L0FvH2WzrDwe7Ca76mSL75 X-Google-Smtp-Source: AGHT+IHc6Utxe+oDWFRPTBpjfNt8u24zyeJ9SIkCFabmekhKBaQwnGDSjDjALsQkj1uPpMTdX3ZyKQ== X-Received: by 2002:a0d:ea0d:0:b0:5a8:dd5f:dbf with SMTP id t13-20020a0dea0d000000b005a8dd5f0dbfmr315133ywe.34.1699403777155; Tue, 07 Nov 2023 16:36:17 -0800 (PST) Received: from [192.168.1.82] (76-218-103-166.lightspeed.sntcca.sbcglobal.net. [76.218.103.166]) by smtp.gmail.com with ESMTPSA id i24-20020a81be18000000b0057085b18cddsm6263406ywn.54.2023.11.07.16.36.16 for (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 07 Nov 2023 16:36:16 -0800 (PST) Message-ID: Date: Tue, 7 Nov 2023 16:36:15 -0800 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:102.0) Gecko/20100101 Thunderbird/102.10.0 Subject: Re: Openssl errors on FreeBSD To: questions@freebsd.org References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> Content-Language: en-US From: "Jin Guojun[VFF]" In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Result: default: False [-4.00 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-0.998]; DMARC_POLICY_ALLOW(-0.50)[gmail.com,none]; R_DKIM_ALLOW(-0.20)[gmail.com:s=20230601]; R_SPF_ALLOW(-0.20)[+ip6:2607:f8b0:4000::/36]; MIME_GOOD(-0.10)[text/plain]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; PREVIOUSLY_DELIVERED(0.00)[questions@freebsd.org]; RCVD_IN_DNSWL_NONE(0.00)[2607:f8b0:4864:20::1131:from]; ARC_NA(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; MLMMJ_DEST(0.00)[questions@freebsd.org]; DKIM_TRACE(0.00)[gmail.com:+]; TO_DN_NONE(0.00)[]; FREEMAIL_FROM(0.00)[gmail.com]; DWL_DNSWL_NONE(0.00)[gmail.com:dkim]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:15169, ipnet:2607:f8b0::/32, country:US]; FREEMAIL_ENVFROM(0.00)[gmail.com]; RCVD_COUNT_TWO(0.00)[2] X-Rspamd-Queue-Id: 4SQ5jt4MRFz3Nfs X-Spamd-Bar: --- On 11/7/23 13:45, iio7@tutanota.com wrote: > I have booted up two other FreeBSD machines on the same network, attached to the same switch as the other two boxes. Same version of FreeBSD and OpenSSL, and they work fine. > > On the two boxes that works, I get the following identical checksums for both: > > MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 > MD5 (/usr/local/lib/libssh2.so.1) = 8db4b65c0e970a9b770901417dadd802 > MD5 (/usr/local/lib/libpsl.so.5) = 43354da8ffb91bee9e9b085c7220d00f > MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 > > On the first failing box: > > MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 > MD5 (/usr/local/lib/libssh2.so.1) = de126372e3ca38ddc3a9aadf55d64d6d > MD5 (/usr/local/lib/libpsl.so.5) = ed11fe03ea248b4e82202c5dabbfb77a > MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 > > On the second failing box: > > MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 > MD5 (/usr/local/lib/libssh2.so.1) = de126372e3ca38ddc3a9aadf55d64d6d > MD5 (/usr/local/lib/libpsl.so.5) = ed11fe03ea248b4e82202c5dabbfb77a > MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 > > On one of the working boxes: > > -r--r--r--  1 root  wheel   52096 Apr  7  2023 /lib/libcrypt.so.5 > -r--r--r--  1 root  wheel  611232 Apr  7  2023 /usr/lib/libssl.so.111 > -rwxr-xr-x  1 root  wheel   68952 Oct  5 03:16 /usr/local/lib/libpsl.so.5 > -rwxr-xr-x  1 root  wheel  262944 Aug  6 03:08 /usr/local/lib/libssh2.so.1 > On the first failing box: > > -r--r--r--  1 root  wheel   52096 Apr 11  2023 /lib/libcrypt.so.5 > -r--r--r--  1 root  wheel  611232 Apr 11  2023 /usr/lib/libssl.so.111 > -rwxr-xr-x  1 root  wheel   72168 Apr 15  2023 /usr/local/lib/libpsl.so.5 > -rwxr-xr-x  1 root  wheel  263296 Jun  1 03:15 /usr/local/lib/libssh2.so.1 > > On the second failing box: > > -r--r--r--  1 root  wheel   52096 Apr 11  2023 /lib/libcrypt.so.5 > -r--r--r--  1 root  wheel  611232 Apr 11  2023 /usr/lib/libssl.so.111 > -rwxr-xr-x  1 root  wheel   72168 Apr 15  2023 /usr/local/lib/libpsl.so.5 > -rwxr-xr-x  1 root  wheel  263296 Jun  1 03:15 /usr/local/lib/libssh2.so.1 > It should be notet that all four boxes only sits on LAN and only I have access. Whatever changes has occurred must be during some upgrade or something. > > The libssl and libcrypto look the same on all machines, so they are not the issue. But libss2 and libpsl are different. Since curl does not directly depend them but depends on libss2 and libpsl, which depend on libssl and libcrypto, then maybe the issue is in libss2 and/or libpsl on the failing boxes. Try to save libss2 and libpsl on a failing machine, and replace them with files from a working box to see if solving the issue. From nobody Wed Nov 8 00:38:20 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQ5mJ0YVLz4ytdk for ; Wed, 8 Nov 2023 00:38:24 +0000 (UTC) (envelope-from jguojun@gmail.com) Received: from mail-yb1-xb2c.google.com (mail-yb1-xb2c.google.com [IPv6:2607:f8b0:4864:20::b2c]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQ5mH1wJKz3PlC for ; Wed, 8 Nov 2023 00:38:23 +0000 (UTC) (envelope-from jguojun@gmail.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=gmail.com header.s=20230601 header.b=etG5c1TJ; spf=pass (mx1.freebsd.org: domain of jguojun@gmail.com designates 2607:f8b0:4864:20::b2c as permitted sender) smtp.mailfrom=jguojun@gmail.com; dmarc=pass (policy=none) header.from=gmail.com Received: by mail-yb1-xb2c.google.com with SMTP id 3f1490d57ef6-da41e70e334so5817394276.3 for ; Tue, 07 Nov 2023 16:38:23 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1699403902; x=1700008702; darn=freebsd.org; h=content-transfer-encoding:in-reply-to:references:to:from :content-language:subject:user-agent:mime-version:date:message-id :from:to:cc:subject:date:message-id:reply-to; bh=SPJ3afSr+ZDlEp4u0EVq4tvX6NWAYbavbkrOKrDjImg=; b=etG5c1TJn37bo7mBw1T3iu5n1yz9rLWSKqFWawGxd7SS+j4q1JpQFC5UVJt/sG2h6H wSiAZlGpb60Uld+FxdgmhzvYeGOi4cjEPQJFXDqd57b7q7G42iimuS6Sik8EgZsPFfoE Eh3qR5ckIy6gsZ8Y+Qi6ePSxb8TGmnB2YraPHg4dddP5eHDss1vhRMPr+duP64V1Sfd5 07/X6gr3ehOBqBfeDzJRNSE+PUde8keEhcZh1cyCIHpp8TKJkPz3HWHxiLQ+z+mUaL0r PJCZ+nY0zKr4TPUAmAZSe1n6/XNW/OpHVrkiQtgSPDftJhU9OLVR30X1xH5z9pkq3eV7 hgCw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1699403902; x=1700008702; h=content-transfer-encoding:in-reply-to:references:to:from :content-language:subject:user-agent:mime-version:date:message-id :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=SPJ3afSr+ZDlEp4u0EVq4tvX6NWAYbavbkrOKrDjImg=; b=M0yA+57opG5/3UWDQaHVBksgJxyPfJ46pyiJxzhoEPUv6ue3s4nrPP6KkCcJqxs1DT McpuEWFhyOFBbk7TochS4RSR2rBRNp7F5mLkgrxzemPcpodziLhsgwZTTe8NFhkq2X6l cFSz+M5sFIXhNTr0CAFBm0HhY4TOubKYdMiNePkZ6ACpEc8k/yA8OWzAzT5eBNj31XMy psu8yWqfLMJ6EKmiQ71lK9yx5g9MGatN2lTA/w5xYBhlPUMo3uBL2VBJE9RmG8rV4/Mh /hKVYAcDXW+X9YfwbNVIBliIJl4SZT0pyThKnOcJdFyt2TBEE1VpXQLpvmAh43JusFVi OkKA== X-Gm-Message-State: AOJu0YwgtFtaEN+qmg9JFEsy9b/v21J3NnTGFDEFxGNK0VzttdX4Xs3Z hd/ZWb0Qubkj03zJUavRoq/Fb2I4HcWe X-Google-Smtp-Source: AGHT+IEko2dxr44YDdrISMxqAudVXnUpvhgVttvbQI49zF+ebDDCWScywLvGu3j3eTJbXGQJjMQhtA== X-Received: by 2002:a25:548:0:b0:da0:c9e4:fab9 with SMTP id 69-20020a250548000000b00da0c9e4fab9mr334871ybf.57.1699403901856; Tue, 07 Nov 2023 16:38:21 -0800 (PST) Received: from [192.168.1.82] (76-218-103-166.lightspeed.sntcca.sbcglobal.net. [76.218.103.166]) by smtp.gmail.com with ESMTPSA id b13-20020a056902030d00b00d9c7bf8f32fsm5588470ybs.42.2023.11.07.16.38.21 for (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 07 Nov 2023 16:38:21 -0800 (PST) Message-ID: Date: Tue, 7 Nov 2023 16:38:20 -0800 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:102.0) Gecko/20100101 Thunderbird/102.10.0 Subject: Re: Openssl errors on FreeBSD Content-Language: en-US From: "Jin Guojun[VFF]" To: questions@freebsd.org References: <26aa343c-e979-47d9-876a-40898c42242b@sentex.net> <9621db26-f97a-40ee-b1fe-6447c0175ddc@sentex.net> In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Spamd-Result: default: False [-4.00 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-0.998]; DMARC_POLICY_ALLOW(-0.50)[gmail.com,none]; R_DKIM_ALLOW(-0.20)[gmail.com:s=20230601]; R_SPF_ALLOW(-0.20)[+ip6:2607:f8b0:4000::/36:c]; MIME_GOOD(-0.10)[text/plain]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; PREVIOUSLY_DELIVERED(0.00)[questions@freebsd.org]; RCVD_IN_DNSWL_NONE(0.00)[2607:f8b0:4864:20::b2c:from]; ARC_NA(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; MLMMJ_DEST(0.00)[questions@freebsd.org]; DKIM_TRACE(0.00)[gmail.com:+]; TO_DN_NONE(0.00)[]; FREEMAIL_FROM(0.00)[gmail.com]; DWL_DNSWL_NONE(0.00)[gmail.com:dkim]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:15169, ipnet:2607:f8b0::/32, country:US]; FREEMAIL_ENVFROM(0.00)[gmail.com]; RCVD_COUNT_TWO(0.00)[2] X-Rspamd-Queue-Id: 4SQ5mH1wJKz3PlC X-Spamd-Bar: --- On 11/7/23 16:36, Jin Guojun[VFF] wrote: > On 11/7/23 13:45, iio7@tutanota.com wrote: >> I have booted up two other FreeBSD machines on the same network, >> attached to the same switch as the other two boxes. Same version of >> FreeBSD and OpenSSL, and they work fine. >> >> On the two boxes that works, I get the following identical checksums >> for both: >> >> MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 >> MD5 (/usr/local/lib/libssh2.so.1) = 8db4b65c0e970a9b770901417dadd802 >> MD5 (/usr/local/lib/libpsl.so.5) = 43354da8ffb91bee9e9b085c7220d00f >> MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 >> >> On the first failing box: >> >> MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 >> MD5 (/usr/local/lib/libssh2.so.1) = de126372e3ca38ddc3a9aadf55d64d6d >> MD5 (/usr/local/lib/libpsl.so.5) = ed11fe03ea248b4e82202c5dabbfb77a >> MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 >> >> On the second failing box: >> >> MD5 (/usr/lib/libssl.so.111) = c0acd4514415e93aeab75b7f4c557215 >> MD5 (/usr/local/lib/libssh2.so.1) = de126372e3ca38ddc3a9aadf55d64d6d >> MD5 (/usr/local/lib/libpsl.so.5) = ed11fe03ea248b4e82202c5dabbfb77a >> MD5 (/lib/libcrypt.so.5) = cb4a7958dbaba1291c11384dbc36cd06 >> >> On one of the working boxes: >> >> -r--r--r--  1 root  wheel   52096 Apr  7  2023 /lib/libcrypt.so.5 >> -r--r--r--  1 root  wheel  611232 Apr  7  2023 /usr/lib/libssl.so.111 >> -rwxr-xr-x  1 root  wheel   68952 Oct  5 03:16 >> /usr/local/lib/libpsl.so.5 >> -rwxr-xr-x  1 root  wheel  262944 Aug  6 03:08 >> /usr/local/lib/libssh2.so.1 >> On the first failing box: >> >> -r--r--r--  1 root  wheel   52096 Apr 11  2023 /lib/libcrypt.so.5 >> -r--r--r--  1 root  wheel  611232 Apr 11  2023 /usr/lib/libssl.so.111 >> -rwxr-xr-x  1 root  wheel   72168 Apr 15  2023 >> /usr/local/lib/libpsl.so.5 >> -rwxr-xr-x  1 root  wheel  263296 Jun  1 03:15 >> /usr/local/lib/libssh2.so.1 >> >> On the second failing box: >> >> -r--r--r--  1 root  wheel   52096 Apr 11  2023 /lib/libcrypt.so.5 >> -r--r--r--  1 root  wheel  611232 Apr 11  2023 /usr/lib/libssl.so.111 >> -rwxr-xr-x  1 root  wheel   72168 Apr 15  2023 >> /usr/local/lib/libpsl.so.5 >> -rwxr-xr-x  1 root  wheel  263296 Jun  1 03:15 >> /usr/local/lib/libssh2.so.1 >> It should be notet that all four boxes only sits on LAN and only I >> have access. Whatever changes has occurred must be during some >> upgrade or something. >> >> > The libssl and libcrypto look the same on all machines, so they are > not the issue. But libss2 and libpsl are different. > > Since curl does not directly depend them but depends on libss2 and > libpsl, which depend on libssl and libcrypto, > > then maybe the issue is in libss2 and/or libpsl on the failing boxes. > > Try to save libss2 and libpsl on a failing machine, and replace them > with files from a working box to see if solving the issue. > Typo: libss2 -> libssh2 From nobody Wed Nov 8 08:55:47 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQJpG6whFz50dRT for ; Wed, 8 Nov 2023 08:55:50 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQJpG1DYjz4X67 for ; Wed, 8 Nov 2023 08:55:50 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=DUI++TYw; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id E2888FBFAA9 for ; Wed, 8 Nov 2023 08:55:47 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699433747; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:Sender; bh=7+4jfrgEmGQfbAf0P/rPj+6q+qXbM0EsbbY5PsmNjmE=; b=DUI++TYwkCXu5Oj3z5UVbm4fpRenS8Flhx3Y1gfXrFCkHXMfM5I7pD+5axDfaebQ NR3pmMnq743tt7NUMmhuw3z4v2869wfe9vMrL1j58zTzT7eBKPUvTx1WvwFT4BwAhJF eI/jrZ2tRzgJUgoIbmraRCflOrNTex/sgxqYQSsyfmve/l5pWsr2qf/gbM2CAZSZmCl sUB/RhRaELSadxiS5ozYv8iIUBvLJ7ChxCDWffRsSjnKben0kebYVTsz2AdXgmMGLJ7 MUmwF5+1E2oAj04QmyVy3YrbbnKLm0ihM8MBy2nuElzFvJ+/d30gDkBb4Txpuk4wkD/ zNFjSRDLiQ== Date: Wed, 8 Nov 2023 09:55:47 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-3.20 / 15.00]; FAKE_REPLY(1.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.90)[-0.904]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; FROM_EQ_ENVFROM(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; RCVD_COUNT_ONE(0.00)[1]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; FROM_NO_DN(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; ARC_NA(0.00)[]; DKIM_TRACE(0.00)[tutanota.com:+]; TO_MATCH_ENVRCPT_ALL(0.00)[]; TO_DN_ALL(0.00)[] X-Rspamd-Queue-Id: 4SQJpG1DYjz4X67 X-Spamd-Bar: --- > Try to save libss2 and libpsl on a failing machine, and replace them=C2= =A0 > with files from a working box to see if solving the issue. I tried copying libssh2 and libpsl from one of the working machines to one = of the non-working machines, but the problem persisted. Why would these files even have different sizes on two of the machines? From nobody Wed Nov 8 17:01:17 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQWZS3bwzz50SQf for ; Wed, 8 Nov 2023 17:01:20 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQWZR2ST6z3GR2 for ; Wed, 8 Nov 2023 17:01:19 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=3CJQ0s8n; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 67A45FBFBBA for ; Wed, 8 Nov 2023 17:01:17 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699462877; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:Sender; bh=z+BPqlGZkb1RKrbIl6wRFboIVxkkv4+DKOx5oF/W/4E=; b=3CJQ0s8nCV4LUEySPf6taIdz8yYADQslUJnGfNHlVJFTj0l8gfi8DBRQrqLEnI59 Au7JPwirw5LWbsIeU+wCZMFNt+piNB5MSCP4FIl0RBCbdpdUTEYcITRry5c8x4VCb9V PoemfIBBjGi+bg2Chrp8Bj4nEmEY8/xBmvUSiOAtVWY3gH4cc6lnzuwmf9bacPwewOd zEzebxoPdKblUs+zBuFdRIwNW7ol1sfzUpn+jh1jXG9gbRv0LQJFAO987afkJ0/ek+e MiaQ06ztZSVD+XWMXz0DFNpLHHDKDTJnALmR1KwOQNgfoaB39UvtSyCpg7iDzN4GDAq LAGxFLV2WA== Date: Wed, 8 Nov 2023 18:01:17 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit X-Spamd-Result: default: False [-3.30 / 15.00]; FAKE_REPLY(1.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-0.997]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; FROM_EQ_ENVFROM(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; RCVD_COUNT_ONE(0.00)[1]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; FROM_NO_DN(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; ARC_NA(0.00)[]; DKIM_TRACE(0.00)[tutanota.com:+]; TO_MATCH_ENVRCPT_ALL(0.00)[]; TO_DN_ALL(0.00)[] X-Rspamd-Queue-Id: 4SQWZR2ST6z3GR2 X-Spamd-Bar: --- I don't know this has anything to say, but if I enable Wireguard on either of the boxes with the broken SSL, and run a VPN connection via an external provider VPN, then I don't get the openssl error. From nobody Wed Nov 8 19:00:36 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQZDB34pRz4ygbT for ; Wed, 8 Nov 2023 19:00:42 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost1.sentex.ca (smarthost1.sentex.ca [IPv6:2607:f3e0:0:1::12]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smarthost1.sentex.ca", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQZDB17Lfz3Z1k for ; Wed, 8 Nov 2023 19:00:42 +0000 (UTC) (envelope-from mike@sentex.net) Authentication-Results: mx1.freebsd.org; none Received: from pyroxene2a.sentex.ca (pyroxene19.sentex.ca [199.212.134.19]) by smarthost1.sentex.ca (8.17.1/8.16.1) with ESMTPS id 3A8J0aXd016568 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=FAIL); Wed, 8 Nov 2023 14:00:36 -0500 (EST) (envelope-from mike@sentex.net) Received: from [IPV6:2607:f3e0:0:4:f0e1:f980:209f:9064] ([IPv6:2607:f3e0:0:4:f0e1:f980:209f:9064]) by pyroxene2a.sentex.ca (8.17.1/8.15.2) with ESMTPS id 3A8J0Yn0067207 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NO); Wed, 8 Nov 2023 14:00:35 -0500 (EST) (envelope-from mike@sentex.net) Message-ID: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> Date: Wed, 8 Nov 2023 14:00:36 -0500 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Openssl errors on FreeBSD Content-Language: en-US To: iio7@tutanota.com, Freebsd Questions References: From: mike tancsa Autocrypt: addr=mike@sentex.net; keydata= xsBNBFywzOMBCACoNFpwi5MeyEREiCeHtbm6pZJI/HnO+wXdCAWtZkS49weOoVyUj5BEXRZP xflV2ib2hflX4nXqhenaNiia4iaZ9ft3I1ebd7GEbGnsWCvAnob5MvDZyStDAuRxPJK1ya/s +6rOvr+eQiXYNVvfBhrCfrtR/esSkitBGxhUkBjOti8QwzD71JVF5YaOjBAs7jZUKyLGj0kW yDg4jUndudWU7G2yc9GwpHJ9aRSUN8e/mWdIogK0v+QBHfv/dsI6zVB7YuxCC9Fx8WPwfhDH VZC4kdYCQWKXrm7yb4TiVdBh5kgvlO9q3js1yYdfR1x8mjK2bH2RSv4bV3zkNmsDCIxjABEB AAHNHW1pa2UgdGFuY3NhIDxtaWtlQHNlbnRleC5uZXQ+wsCOBBMBCAA4FiEEmuvCXT0aY6hs 4SbWeVOEFl5WrMgFAl+pQfkCGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeVOEFl5W rMiN6ggAk3H5vk8QnbvGbb4sinxZt/wDetgk0AOR9NRmtTnPaW+sIJEfGBOz47Xih+f7uWJS j+uvc9Ewn2Z7n8z3ZHJlLAByLVLtcNXGoRIGJ27tevfOaNqgJHBPbFOcXCBBFTx4MYMM4iAZ cDT5vsBTSaM36JZFtHZBKkuFEItbA/N8ZQSHKdTYMIA7A3OCLGbJBqloQ8SlW4MkTzKX4u7R yefAYQ0h20x9IqC5Ju8IsYRFacVZconT16KS81IBceO42vXTN0VexbVF2rZIx3v/NT75r6Vw 0FlXVB1lXOHKydRA2NeleS4NEG2vWqy/9Boj0itMfNDlOhkrA/0DcCurMpnpbM7ATQRcsMzk AQgA1Dpo/xWS66MaOJLwA28sKNMwkEk1Yjs+okOXDOu1F+0qvgE8sVmrOOPvvWr4axtKRSG1 t2QUiZ/ZkW/x/+t0nrM39EANV1VncuQZ1ceIiwTJFqGZQ8kb0+BNkwuNVFHRgXm1qzAJweEt RdsCMohB+H7BL5LGCVG5JaU0lqFU9pFP40HxEbyzxjsZgSE8LwkI6wcu0BLv6K6cLm0EiHPO l5G8kgRi38PS7/6s3R8QDsEtbGsYy6O82k3zSLIjuDBwA9GRaeigGppTxzAHVjf5o9KKu4O7 gC2KKVHPegbXS+GK7DU0fjzX57H5bZ6komE5eY4p3oWT/CwVPSGfPs8jOwARAQABwsB2BBgB CAAgFiEEmuvCXT0aY6hs4SbWeVOEFl5WrMgFAl+pQfkCGwwACgkQeVOEFl5WrMiVqwf9GwU8 c6cylknZX8QwlsVudTC8xr/L17JA84wf03k3d4wxP7bqy5AYy7jboZMbgWXngAE/HPQU95NM aukysSnknzoIpC96XZJ0okLBXVS6Y0ylZQ+HrbIhMpuQPoDweoF5F9wKrsHRoDaUK1VR706X rwm4HUzh7Jk+auuMYfuCh0FVlFBEuiJWMLhg/5WCmcRfiuB6F59ZcUQrwLEZeNhF2XJV4KwB Tlg7HCWO/sy1foE5noaMyACjAtAQE9p5kGYaj+DuRhPdWUTsHNuqrhikzIZd2rrcMid+ktb0 NvtvswzMO059z1YGMtGSqQ4srCArju+XHIdTFdiIYbd7+jeehg== In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit X-Scanned-By: MIMEDefang 2.84 on 64.7.153.18 X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:11647, ipnet:2607:f3e0::/32, country:CA] X-Rspamd-Queue-Id: 4SQZDB17Lfz3Z1k On 11/8/2023 12:01 PM, iio7@tutanota.com wrote: > I don't know this has anything to say, but if I enable Wireguard on either of the boxes with the broken SSL, and run a VPN connection via an external provider VPN, then I don't get the openssl error. what does kldstat show with and without wg enabled. Do you have a custom kernel ? If so, what changes from generic did you make ?     ---Mike From nobody Wed Nov 8 20:05:05 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQbfY1kKzz4yyH4 for ; Wed, 8 Nov 2023 20:05:09 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQbfX4Srvz4JDL for ; Wed, 8 Nov 2023 20:05:08 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=n+XnvWL5; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id 1D61EFBFAA9 for ; Wed, 8 Nov 2023 20:05:06 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699473905; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=/dBPO7Gv3ARwxnrddu3riqGbwMGq34z0JnOW9/70GCs=; b=n+XnvWL57sf8diupYZTwvBLky6FAxdWJ/Bkba44x3mY7HQx6awdnOGUMZ5V4huw+ uVGEoq+mbHxCkLeedLgkDgvbzQtYf//WXtOSKPd9bOunHQWuxZxcgHgrYpXOJjTH2/R Iz7Zz+/Dgx+ZlsSd3rwSbLMF1Lc/yDJb5bHHYlvk7UhYzDXlCADM6+8kjxnYjTtn2U7 9zy+1aL27gc3luGCsCieF0l/7Tqm3/5ZoZfVbQI4gR35wqRq1tKBLBIeELr/HHHoXXP Ye/DfSkA7s3Bs7/x44gaF7+QzDxnZ15yybvps/DKAW42iTeslfkWfx4P63FXY4KHeK8 gQuoMj3uqQ== Date: Wed, 8 Nov 2023 21:05:05 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> References: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.29 / 15.00]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.99)[-0.992]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SQbfX4Srvz4JDL X-Spamd-Bar: ---- >> I don't know this has anything to say, but if I enable Wireguard on eith= er of the boxes with the broken SSL, and run a VPN connection via an extern= al provider VPN, then I don't get the openssl error. >> > > what does > > kldstat > > show with and without wg enabled. Do you have a custom kernel ? If so, wh= at changes from generic did you make ? > I am only using the generic kernel on all the boxes. kldstat before wg: Id Refs Address=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 Size Name 1=C2=A0=C2=A0 23 0xffffffff80200000=C2=A0 1f3e2d0 kernel 2=C2=A0=C2=A0=C2=A0 1 0xffffffff8213f000=C2=A0=C2=A0=C2=A0=C2=A0 a4a0 crypt= odev.ko 3=C2=A0=C2=A0=C2=A0 1 0xffffffff8214a000=C2=A0=C2=A0 59dfa8 zfs.ko 4=C2=A0=C2=A0=C2=A0 1 0xffffffff826e9000=C2=A0=C2=A0=C2=A0 ff680 if_re.ko 5=C2=A0=C2=A0=C2=A0 1 0xffffffff82b20000=C2=A0=C2=A0=C2=A0=C2=A0 3250 ichsm= b.ko 6=C2=A0=C2=A0=C2=A0 1 0xffffffff82b24000=C2=A0=C2=A0=C2=A0=C2=A0 2180 smbus= .ko 7=C2=A0=C2=A0=C2=A0 1 0xffffffff82b27000=C2=A0=C2=A0=C2=A0=C2=A0 3530 fdesc= fs.ko kldstat after wg: 1=C2=A0=C2=A0 26 0xffffffff80200000=C2=A0 1f3e2d0 kernel 2=C2=A0=C2=A0=C2=A0 1 0xffffffff8213f000=C2=A0=C2=A0=C2=A0=C2=A0 a4a0 crypt= odev.ko 3=C2=A0=C2=A0=C2=A0 1 0xffffffff8214a000=C2=A0=C2=A0 59dfa8 zfs.ko 4=C2=A0=C2=A0=C2=A0 1 0xffffffff826e9000=C2=A0=C2=A0=C2=A0 ff680 if_re.ko 5=C2=A0=C2=A0=C2=A0 1 0xffffffff82b20000=C2=A0=C2=A0=C2=A0=C2=A0 3250 ichsm= b.ko 6=C2=A0=C2=A0=C2=A0 1 0xffffffff82b24000=C2=A0=C2=A0=C2=A0=C2=A0 2180 smbus= .ko 7=C2=A0=C2=A0=C2=A0 1 0xffffffff82b27000=C2=A0=C2=A0=C2=A0=C2=A0 3530 fdesc= fs.ko 8=C2=A0=C2=A0=C2=A0 1 0xffffffff82b2b000=C2=A0=C2=A0=C2=A0 2e550 if_wg.ko From nobody Wed Nov 8 20:43:10 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQcVQ6zc3z507b0 for ; Wed, 8 Nov 2023 20:43:10 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost1.sentex.ca (smarthost1.sentex.ca [IPv6:2607:f3e0:0:1::12]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smarthost1.sentex.ca", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQcVQ6Fxvz4NlJ for ; Wed, 8 Nov 2023 20:43:10 +0000 (UTC) (envelope-from mike@sentex.net) Authentication-Results: mx1.freebsd.org; none Received: from pyroxene2a.sentex.ca (pyroxene19.sentex.ca [199.212.134.19]) by smarthost1.sentex.ca (8.17.1/8.16.1) with ESMTPS id 3A8KhAcV035256 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=FAIL); Wed, 8 Nov 2023 15:43:10 -0500 (EST) (envelope-from mike@sentex.net) Received: from [IPV6:2607:f3e0:0:4:f0e1:f980:209f:9064] ([IPv6:2607:f3e0:0:4:f0e1:f980:209f:9064]) by pyroxene2a.sentex.ca (8.17.1/8.15.2) with ESMTPS id 3A8Kh9FL082647 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NO); Wed, 8 Nov 2023 15:43:09 -0500 (EST) (envelope-from mike@sentex.net) Content-Type: multipart/alternative; boundary="------------hpkmbwtECzYpnOGZhnkAuVXj" Message-ID: <17ad4d1d-c5b8-48f0-b1c0-ec7836f85400@sentex.net> Date: Wed, 8 Nov 2023 15:43:10 -0500 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Openssl errors on FreeBSD Content-Language: en-US To: iio7@tutanota.com, Freebsd Questions References: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> From: mike tancsa Autocrypt: addr=mike@sentex.net; keydata= xsBNBFywzOMBCACoNFpwi5MeyEREiCeHtbm6pZJI/HnO+wXdCAWtZkS49weOoVyUj5BEXRZP xflV2ib2hflX4nXqhenaNiia4iaZ9ft3I1ebd7GEbGnsWCvAnob5MvDZyStDAuRxPJK1ya/s +6rOvr+eQiXYNVvfBhrCfrtR/esSkitBGxhUkBjOti8QwzD71JVF5YaOjBAs7jZUKyLGj0kW yDg4jUndudWU7G2yc9GwpHJ9aRSUN8e/mWdIogK0v+QBHfv/dsI6zVB7YuxCC9Fx8WPwfhDH VZC4kdYCQWKXrm7yb4TiVdBh5kgvlO9q3js1yYdfR1x8mjK2bH2RSv4bV3zkNmsDCIxjABEB AAHNHW1pa2UgdGFuY3NhIDxtaWtlQHNlbnRleC5uZXQ+wsCOBBMBCAA4FiEEmuvCXT0aY6hs 4SbWeVOEFl5WrMgFAl+pQfkCGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeVOEFl5W rMiN6ggAk3H5vk8QnbvGbb4sinxZt/wDetgk0AOR9NRmtTnPaW+sIJEfGBOz47Xih+f7uWJS j+uvc9Ewn2Z7n8z3ZHJlLAByLVLtcNXGoRIGJ27tevfOaNqgJHBPbFOcXCBBFTx4MYMM4iAZ cDT5vsBTSaM36JZFtHZBKkuFEItbA/N8ZQSHKdTYMIA7A3OCLGbJBqloQ8SlW4MkTzKX4u7R yefAYQ0h20x9IqC5Ju8IsYRFacVZconT16KS81IBceO42vXTN0VexbVF2rZIx3v/NT75r6Vw 0FlXVB1lXOHKydRA2NeleS4NEG2vWqy/9Boj0itMfNDlOhkrA/0DcCurMpnpbM7ATQRcsMzk AQgA1Dpo/xWS66MaOJLwA28sKNMwkEk1Yjs+okOXDOu1F+0qvgE8sVmrOOPvvWr4axtKRSG1 t2QUiZ/ZkW/x/+t0nrM39EANV1VncuQZ1ceIiwTJFqGZQ8kb0+BNkwuNVFHRgXm1qzAJweEt RdsCMohB+H7BL5LGCVG5JaU0lqFU9pFP40HxEbyzxjsZgSE8LwkI6wcu0BLv6K6cLm0EiHPO l5G8kgRi38PS7/6s3R8QDsEtbGsYy6O82k3zSLIjuDBwA9GRaeigGppTxzAHVjf5o9KKu4O7 gC2KKVHPegbXS+GK7DU0fjzX57H5bZ6komE5eY4p3oWT/CwVPSGfPs8jOwARAQABwsB2BBgB CAAgFiEEmuvCXT0aY6hs4SbWeVOEFl5WrMgFAl+pQfkCGwwACgkQeVOEFl5WrMiVqwf9GwU8 c6cylknZX8QwlsVudTC8xr/L17JA84wf03k3d4wxP7bqy5AYy7jboZMbgWXngAE/HPQU95NM aukysSnknzoIpC96XZJ0okLBXVS6Y0ylZQ+HrbIhMpuQPoDweoF5F9wKrsHRoDaUK1VR706X rwm4HUzh7Jk+auuMYfuCh0FVlFBEuiJWMLhg/5WCmcRfiuB6F59ZcUQrwLEZeNhF2XJV4KwB Tlg7HCWO/sy1foE5noaMyACjAtAQE9p5kGYaj+DuRhPdWUTsHNuqrhikzIZd2rrcMid+ktb0 NvtvswzMO059z1YGMtGSqQ4srCArju+XHIdTFdiIYbd7+jeehg== In-Reply-To: X-Scanned-By: MIMEDefang 2.84 on 64.7.153.18 X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:11647, ipnet:2607:f3e0::/32, country:CA] X-Rspamd-Queue-Id: 4SQcVQ6Fxvz4NlJ This is a multi-part message in MIME format. --------------hpkmbwtECzYpnOGZhnkAuVXj Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit On 11/8/2023 3:05 PM, iio7@tutanota.com wrote: > I am only using the generic kernel on all the boxes. > kldstat before wg: > > Id Refs Address                Size Name > 1   23 0xffffffff80200000  1f3e2d0 kernel > 2    1 0xffffffff8213f000     a4a0 cryptodev.ko > 3    1 0xffffffff8214a000   59dfa8 zfs.ko > 4    1 0xffffffff826e9000    ff680 if_re.ko > 5    1 0xffffffff82b20000     3250 ichsmb.ko > 6    1 0xffffffff82b24000     2180 smbus.ko > 7    1 0xffffffff82b27000     3530 fdescfs.ko Can you kldunload cryptodev and try your tests again ? What hardware is this running on  ?  Do you have any special flags on the re nic ?  ifconfig re0 shows what ?     ---Mike --------------hpkmbwtECzYpnOGZhnkAuVXj Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: 8bit
On 11/8/2023 3:05 PM, iio7@tutanota.com wrote:
I am only using the generic kernel on all the boxes.
kldstat before wg:

Id Refs Address                Size Name
1   23 0xffffffff80200000  1f3e2d0 kernel
2    1 0xffffffff8213f000     a4a0 cryptodev.ko
3    1 0xffffffff8214a000   59dfa8 zfs.ko
4    1 0xffffffff826e9000    ff680 if_re.ko
5    1 0xffffffff82b20000     3250 ichsmb.ko
6    1 0xffffffff82b24000     2180 smbus.ko
7    1 0xffffffff82b27000     3530 fdescfs.ko

Can you kldunload cryptodev and try your tests again ? What hardware is this running on  ?  Do you have any special flags on the re nic ?  ifconfig re0 shows what ?

    ---Mike


    
--------------hpkmbwtECzYpnOGZhnkAuVXj-- From nobody Thu Nov 9 10:21:13 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SQyfP5BMgz50848 for ; Thu, 9 Nov 2023 10:21:17 +0000 (UTC) (envelope-from iio7@tutanota.com) Received: from w1.tutanota.de (w1.tutanota.de [81.3.6.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "mail.tutanota.de", Issuer "Sectigo RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SQyfN3Pgnz4Dgs for ; Thu, 9 Nov 2023 10:21:16 +0000 (UTC) (envelope-from iio7@tutanota.com) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tutanota.com header.s=s1 header.b=zcmA0tui; spf=pass (mx1.freebsd.org: domain of iio7@tutanota.com designates 81.3.6.162 as permitted sender) smtp.mailfrom=iio7@tutanota.com; dmarc=pass (policy=quarantine) header.from=tutanota.com Received: from tutadb.w10.tutanota.de (unknown [192.168.1.10]) by w1.tutanota.de (Postfix) with ESMTP id EEB80FBF952 for ; Thu, 9 Nov 2023 10:21:13 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1699525273; s=s1; d=tutanota.com; h=From:From:To:To:Subject:Subject:Content-Description:Content-ID:Content-Type:Content-Type:Content-Transfer-Encoding:Content-Transfer-Encoding:Cc:Date:Date:In-Reply-To:In-Reply-To:MIME-Version:MIME-Version:Message-ID:Message-ID:Reply-To:References:References:Sender; bh=tSyQhGXZxoBkQCRcSt30qLegAzEJd6zq3mzwVM+E/W0=; b=zcmA0tuiSa1T6+vphBwj6zSzjIU2XPlngN5AclaywLozO/6AKZe5OV8MSbpCDwxF m96nNgz8QPLbEB0l6VPuwvzlI9Axrtk4x50NgKlQEcFeERtxElbGIrk+p21Ijoe5M9h snYCctZWw6wtPWmaSPSE/YpgM7bDpwCGJxWx1RJclc7XHhG1rFH/rU5tgA/3ciLsl2U OCV0qq4Nv49kfy0O63zpvy+c0914//LT42KIFbeyEkdp8NohiHL84jHiRxbQzID0cGZ uCcvVAv1v18l5GvS9ZrNl24XTbgVlA0flePK2W756Mjg0yl2iA7fUQcLBIDLqBBHsif qxLUimAO6A== Date: Thu, 9 Nov 2023 11:21:13 +0100 (CET) From: iio7@tutanota.com To: Freebsd Questions Message-ID: In-Reply-To: <17ad4d1d-c5b8-48f0-b1c0-ec7836f85400@sentex.net> References: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> <17ad4d1d-c5b8-48f0-b1c0-ec7836f85400@sentex.net> Subject: Re: Openssl errors on FreeBSD List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-4.29 / 15.00]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_SHORT(-0.99)[-0.994]; DMARC_POLICY_ALLOW(-0.50)[tutanota.com,quarantine]; RWL_MAILSPIKE_EXCELLENT(-0.40)[81.3.6.162:from]; R_DKIM_ALLOW(-0.20)[tutanota.com:s=s1]; R_SPF_ALLOW(-0.20)[+ip4:81.3.6.160/28]; ONCE_RECEIVED(0.10)[]; MIME_GOOD(-0.10)[text/plain]; RCVD_COUNT_ONE(0.00)[1]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; MLMMJ_DEST(0.00)[freebsd-questions@freebsd.org]; ASN(0.00)[asn:24679, ipnet:81.3.0.0/18, country:DE]; DKIM_TRACE(0.00)[tutanota.com:+]; MID_RHS_MATCH_FROM(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; FROM_NO_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; TO_DN_ALL(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; ARC_NA(0.00)[] X-Rspamd-Queue-Id: 4SQyfN3Pgnz4Dgs X-Spamd-Bar: ---- > > Can you kldunload cryptodev and try your tests again ? What hardware= is this running on=C2=A0 ?=C2=A0 Do you have any special flags on the= re nic ?=C2=A0 ifconfig re0 shows what ? > > Mike, thank you very much for your patience. Your question about the hardwa= re suddenly made me remember that both these boxes had problems with the Re= altek driver from base. One of the boxes has a=C2=A0Realtek PCIe 2.5GbE NIC on the motherboard whic= h doesn't work with the re driver from base at all. The card is seen in dme= sg, but it does not show up with ifconfig and cannot get an IP assigned. The other box has a=C2=A0Realtek PCIe GbE 1Gbit NIC on the motherboard whic= h works with the driver re from base, however not without bugs, this bug pa= rticulary=C2=A0https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D166724 So in both cases I switched to the=C2=A0realtek-re-kmod driver from package= s. I have just tried with an Intel card in one of the boxes and the problem is= gone. I suspect there is a problem with the=C2=A0realtek-re-kmod driver. Thanks all for your help! From nobody Thu Nov 9 22:03:17 2023 X-Original-To: freebsd-questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SRGDX3HLVz50lPl for ; Thu, 9 Nov 2023 22:03:24 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost1.sentex.ca (smarthost1.sentex.ca [IPv6:2607:f3e0:0:1::12]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smarthost1.sentex.ca", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SRGDX1RV5z4GgX for ; Thu, 9 Nov 2023 22:03:24 +0000 (UTC) (envelope-from mike@sentex.net) Authentication-Results: mx1.freebsd.org; none Received: from pyroxene2a.sentex.ca (pyroxene19.sentex.ca [199.212.134.19]) by smarthost1.sentex.ca (8.17.1/8.16.1) with ESMTPS id 3A9M3Hat013182 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=FAIL); Thu, 9 Nov 2023 17:03:17 -0500 (EST) (envelope-from mike@sentex.net) Received: from [IPV6:2607:f3e0:0:4:3cd8:de88:ee16:1008] ([IPv6:2607:f3e0:0:4:3cd8:de88:ee16:1008]) by pyroxene2a.sentex.ca (8.17.1/8.15.2) with ESMTPS id 3A9M3Gfb034160 (version=TLSv1.3 cipher=TLS_AES_128_GCM_SHA256 bits=128 verify=NO); Thu, 9 Nov 2023 17:03:16 -0500 (EST) (envelope-from mike@sentex.net) Content-Type: multipart/alternative; boundary="------------bpgnvnp6NikS3KSRJ1GYxFsN" Message-ID: <9a0d649d-eb39-453b-9086-a7f36b00cba7@sentex.net> Date: Thu, 9 Nov 2023 17:03:17 -0500 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: Openssl errors on FreeBSD (resolved) Content-Language: en-US To: iio7@tutanota.com, Freebsd Questions References: <0bfbeb80-1dbc-495c-9b62-1b592605ed99@sentex.net> <17ad4d1d-c5b8-48f0-b1c0-ec7836f85400@sentex.net> From: mike tancsa Autocrypt: addr=mike@sentex.net; keydata= xsBNBFywzOMBCACoNFpwi5MeyEREiCeHtbm6pZJI/HnO+wXdCAWtZkS49weOoVyUj5BEXRZP xflV2ib2hflX4nXqhenaNiia4iaZ9ft3I1ebd7GEbGnsWCvAnob5MvDZyStDAuRxPJK1ya/s +6rOvr+eQiXYNVvfBhrCfrtR/esSkitBGxhUkBjOti8QwzD71JVF5YaOjBAs7jZUKyLGj0kW yDg4jUndudWU7G2yc9GwpHJ9aRSUN8e/mWdIogK0v+QBHfv/dsI6zVB7YuxCC9Fx8WPwfhDH VZC4kdYCQWKXrm7yb4TiVdBh5kgvlO9q3js1yYdfR1x8mjK2bH2RSv4bV3zkNmsDCIxjABEB AAHNHW1pa2UgdGFuY3NhIDxtaWtlQHNlbnRleC5uZXQ+wsCOBBMBCAA4FiEEmuvCXT0aY6hs 4SbWeVOEFl5WrMgFAl+pQfkCGwMFCwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQeVOEFl5W rMiN6ggAk3H5vk8QnbvGbb4sinxZt/wDetgk0AOR9NRmtTnPaW+sIJEfGBOz47Xih+f7uWJS j+uvc9Ewn2Z7n8z3ZHJlLAByLVLtcNXGoRIGJ27tevfOaNqgJHBPbFOcXCBBFTx4MYMM4iAZ cDT5vsBTSaM36JZFtHZBKkuFEItbA/N8ZQSHKdTYMIA7A3OCLGbJBqloQ8SlW4MkTzKX4u7R yefAYQ0h20x9IqC5Ju8IsYRFacVZconT16KS81IBceO42vXTN0VexbVF2rZIx3v/NT75r6Vw 0FlXVB1lXOHKydRA2NeleS4NEG2vWqy/9Boj0itMfNDlOhkrA/0DcCurMpnpbM7ATQRcsMzk AQgA1Dpo/xWS66MaOJLwA28sKNMwkEk1Yjs+okOXDOu1F+0qvgE8sVmrOOPvvWr4axtKRSG1 t2QUiZ/ZkW/x/+t0nrM39EANV1VncuQZ1ceIiwTJFqGZQ8kb0+BNkwuNVFHRgXm1qzAJweEt RdsCMohB+H7BL5LGCVG5JaU0lqFU9pFP40HxEbyzxjsZgSE8LwkI6wcu0BLv6K6cLm0EiHPO l5G8kgRi38PS7/6s3R8QDsEtbGsYy6O82k3zSLIjuDBwA9GRaeigGppTxzAHVjf5o9KKu4O7 gC2KKVHPegbXS+GK7DU0fjzX57H5bZ6komE5eY4p3oWT/CwVPSGfPs8jOwARAQABwsB2BBgB CAAgFiEEmuvCXT0aY6hs4SbWeVOEFl5WrMgFAl+pQfkCGwwACgkQeVOEFl5WrMiVqwf9GwU8 c6cylknZX8QwlsVudTC8xr/L17JA84wf03k3d4wxP7bqy5AYy7jboZMbgWXngAE/HPQU95NM aukysSnknzoIpC96XZJ0okLBXVS6Y0ylZQ+HrbIhMpuQPoDweoF5F9wKrsHRoDaUK1VR706X rwm4HUzh7Jk+auuMYfuCh0FVlFBEuiJWMLhg/5WCmcRfiuB6F59ZcUQrwLEZeNhF2XJV4KwB Tlg7HCWO/sy1foE5noaMyACjAtAQE9p5kGYaj+DuRhPdWUTsHNuqrhikzIZd2rrcMid+ktb0 NvtvswzMO059z1YGMtGSqQ4srCArju+XHIdTFdiIYbd7+jeehg== In-Reply-To: X-Scanned-By: MIMEDefang 2.84 on 64.7.153.18 X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:11647, ipnet:2607:f3e0::/32, country:CA] X-Rspamd-Queue-Id: 4SRGDX1RV5z4GgX This is a multi-part message in MIME format. --------------bpgnvnp6NikS3KSRJ1GYxFsN Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit On 11/9/2023 5:21 AM, iio7@tutanota.com wrote: > One of the boxes has a Realtek PCIe 2.5GbE NIC on the motherboard > which doesn't work with the re driver from base at all. The card is > seen in dmesg, but it does not show up with ifconfig and cannot get an > IP assigned. > The other box has a Realtek PCIe GbE 1Gbit NIC on the motherboard which works with the driver re from base, however not without bugs, this bug particularyhttps://bugs.freebsd.org/bugzilla/show_bug.cgi?id=166724 > > So in both cases I switched to the realtek-re-kmod driver from packages. > > I have just tried with an Intel card in one of the boxes and the problem is gone. > > I suspect there is a problem with the realtek-re-kmod driver. > Oh thats excellent news you got to the bottom of it. I would say open a PR in case someone comes along and funds some NIC development for this hardware.  pciconfig -lcvb re0;  ifconfig -v etc to perhaps show your hardware details in the PR     ---Mike --------------bpgnvnp6NikS3KSRJ1GYxFsN Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: 8bit
On 11/9/2023 5:21 AM, iio7@tutanota.com wrote:
One of the boxes has a Realtek PCIe 2.5GbE NIC on the motherboard which doesn't work with the re driver from base at all. The card is seen in dmesg, but it does not show up with ifconfig and cannot get an IP assigned.
The other box has a Realtek PCIe GbE 1Gbit NIC on the motherboard which works with the driver re from base, however not without bugs, this bug particulary https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=166724

So in both cases I switched to the realtek-re-kmod driver from packages.

I have just tried with an Intel card in one of the boxes and the problem is gone.

I suspect there is a problem with the realtek-re-kmod driver.

Oh thats excellent news you got to the bottom of it. I would say open a PR in case someone comes along and funds some NIC development for this hardware.  pciconfig -lcvb re0;  ifconfig -v etc to perhaps show your hardware details in the PR

    ---Mike



    
--------------bpgnvnp6NikS3KSRJ1GYxFsN--